Skip site navigation (1)Skip section navigation (2)
Date:      Thu, 16 Jun 2005 22:14:48 +0200
From:      Andy Hilker <ah@crypta.net>
To:        jon@abccomm.com
Cc:        freebsd-pf@freebsd.org
Subject:   Re: synproxy and states
Message-ID:  <20050616201448.GB1149@mail.crypta.net>
In-Reply-To: <8eea0408050616123835594e12@mail.gmail.com>
References:  <20050616191047.GA98176@mail.crypta.net> <8eea0408050616123835594e12@mail.gmail.com>

next in thread | previous in thread | raw e-mail | index | archive | help
Hi,

You (Jon Simola) wrote:
> If that's a bridge config, synproxy will not work. It's not possible
> to tell from the documentation you provided.

No, it is the pf box is acting as gateway.
But the reply packet from webserver is dropped at the dmz interface.
If I allow this reply explicitly, synproxy works. Obviously I have a problem
with state table entries.

bye,
Andy 



Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?20050616201448.GB1149>