From owner-freebsd-net@freebsd.org Tue Dec 1 10:24:31 2015 Return-Path: Delivered-To: freebsd-net@mailman.ysv.freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2001:1900:2254:206a::19:1]) by mailman.ysv.freebsd.org (Postfix) with ESMTP id A02D7A3D103 for ; Tue, 1 Dec 2015 10:24:31 +0000 (UTC) (envelope-from julian@freebsd.org) Received: from vps1.elischer.org (vps1.elischer.org [204.109.63.16]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (Client did not present a certificate) by mx1.freebsd.org (Postfix) with ESMTPS id 750701F0E for ; Tue, 1 Dec 2015 10:24:30 +0000 (UTC) (envelope-from julian@freebsd.org) Received: from Julian-MBP3.local (50-196-156-133-static.hfc.comcastbusiness.net [50.196.156.133]) (authenticated bits=0) by vps1.elischer.org (8.15.2/8.15.2) with ESMTPSA id tB1AOOFo005348 (version=TLSv1.2 cipher=DHE-RSA-AES128-SHA bits=128 verify=NO); Tue, 1 Dec 2015 02:24:27 -0800 (PST) (envelope-from julian@freebsd.org) Subject: Re: Outgoing packets being sent via wrong interface To: Daniel Bilik References: <20151120155511.5fb0f3b07228a0c829fa223f@neosystem.org> <20151120163431.3449a473db9de23576d3a4b4@neosystem.org> <20151121212043.GC2307@vega.codepro.be> <20151122130240.165a50286cbaa9288ffc063b@neosystem.cz> <20151125092145.e93151af70085c2b3393f149@neosystem.cz> <20151125122033.GB41119@in-addr.com> <20151127101349.752c94090e78ca68cf0f81fc@neosystem.org> <56597CB5.7030307@freebsd.org> <20151130101838.e59be3db0eb3922d87544b16@neosystem.cz> <565C6F86.7090108@freebsd.org> <20151201090332.09b038935b8eabf33288c24c@neosystem.cz> Cc: freebsd-net@freebsd.org From: Julian Elischer Message-ID: <565D7552.30806@freebsd.org> Date: Tue, 1 Dec 2015 18:24:18 +0800 User-Agent: Mozilla/5.0 (Macintosh; Intel Mac OS X 10.11; rv:38.0) Gecko/20100101 Thunderbird/38.4.0 MIME-Version: 1.0 In-Reply-To: <20151201090332.09b038935b8eabf33288c24c@neosystem.cz> Content-Type: text/plain; charset=windows-1252; format=flowed Content-Transfer-Encoding: 7bit X-BeenThere: freebsd-net@freebsd.org X-Mailman-Version: 2.1.20 Precedence: list List-Id: Networking and TCP/IP with FreeBSD List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Tue, 01 Dec 2015 10:24:31 -0000 On 1/12/2015 4:03 PM, Daniel Bilik wrote: > On Mon, 30 Nov 2015 23:47:18 +0800 > Julian Elischer wrote: > >> ok next time try >> netstat -raAnW before and after > Attached ("Internet6" part removed to reduce noise). > >> maybe we can spot at difference. > According to diff(1), entries differ only by "Use" column between .pre > and .during. The .post output shows the state after "refreshing" default > route, so there are also different addresses for those entries. so that doesn't tell us much.. I"m as stumped as you are here.. if you reload pf it has no effect? pf is the part of the picture I have no experience with so I'm naturally suspicious of it. have you tried a simple ipfw nat instead? just as a sanity check? something like ipfw nat 1 config if re0 ipfw add 30 nat 1 ip from not me to any out xmit re0 ipfw add 40 nat 1 ip from any to me in recv re0 > > -- > Dan