From owner-freebsd-pf@FreeBSD.ORG Mon Oct 17 14:55:32 2011 Return-Path: Delivered-To: freebsd-pf@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2001:4f8:fff6::34]) by hub.freebsd.org (Postfix) with ESMTP id 0C597106564A for ; Mon, 17 Oct 2011 14:55:32 +0000 (UTC) (envelope-from emss.mail@gmail.com) Received: from mail-ey0-f182.google.com (mail-ey0-f182.google.com [209.85.215.182]) by mx1.freebsd.org (Postfix) with ESMTP id 88C958FC15 for ; Mon, 17 Oct 2011 14:55:31 +0000 (UTC) Received: by eyd10 with SMTP id 10so3971749eyd.13 for ; Mon, 17 Oct 2011 07:55:30 -0700 (PDT) DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=gmail.com; s=gamma; h=sender:x-virus-scanned:to:cc:subject:from:in-reply-to:references :x-operating-system:date:message-id:user-agent:mime-version :content-type:content-transfer-encoding; bh=FKLRkRhSi+7DhV9q/Sv5ruiGs+rIGRaHARGpWMkeoBk=; b=tjWMsgKrK2gN2Cr664teAa6JJU13Jr5KBDwSgLUC99Pp56z8/3MVkMPiqUGPx1nk3g WVdtueEENiNb4SSTJ/qJUVD8fFNniQezW7VYlXcyC+PZDHnDdSg88PMvNe3DhUOnI2k8 RaUxEZNqW2VoBoM8nhGz40FXRIJp7k5IjSOB4= Received: by 10.216.139.135 with SMTP id c7mr3978113wej.28.1318863330504; Mon, 17 Oct 2011 07:55:30 -0700 (PDT) Received: from srvbsdfenssv.interne.associated-bears.org (LCaen-151-92-21-48.w217-128.abo.wanadoo.fr. [217.128.200.48]) by mx.google.com with ESMTPS id ek13sm31559989wbb.3.2011.10.17.07.55.27 (version=TLSv1/SSLv3 cipher=OTHER); Mon, 17 Oct 2011 07:55:28 -0700 (PDT) Sender: Eric Masson Received: from srvbsdfenssv.interne.associated-bears.org (localhost [127.0.0.1]) by srvbsdfenssv.interne.associated-bears.org (Postfix) with ESMTP id E1A93CF425; Mon, 17 Oct 2011 16:55:25 +0200 (CEST) X-Virus-Scanned: amavisd-new at interne.associated-bears.org Received: from srvbsdfenssv.interne.associated-bears.org ([127.0.0.1]) by srvbsdfenssv.interne.associated-bears.org (srvbsdfenssv.interne.associated-bears.org [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id z6ZN4ZPXUgua; Mon, 17 Oct 2011 16:55:19 +0200 (CEST) Received: by srvbsdfenssv.interne.associated-bears.org (Postfix, from userid 1001) id CCD8FCF413; Mon, 17 Oct 2011 16:55:19 +0200 (CEST) To: Damien Fleuriot From: Eric Masson In-Reply-To: <4E9C36FF.2050508@my.gd> (Damien Fleuriot's message of "Mon, 17 Oct 2011 16:09:03 +0200") References: <86botfu6i0.fsf@srvbsdfenssv.interne.associated-bears.org> <4E9C36FF.2050508@my.gd> X-Operating-System: FreeBSD 8.2-RELEASE-p4 amd64 Date: Mon, 17 Oct 2011 16:55:19 +0200 Message-ID: <867h43u0q0.fsf@srvbsdfenssv.interne.associated-bears.org> User-Agent: Gnus/5.1008 (Gnus v5.10.8) XEmacs/21.5-b28 (berkeley-unix) MIME-Version: 1.0 Content-Type: text/plain; charset=iso-8859-15 Content-Transfer-Encoding: 8bit Cc: freebsd-pf@freebsd.org Subject: Re: PF & Inside NAT X-BeenThere: freebsd-pf@freebsd.org X-Mailman-Version: 2.1.5 Precedence: list List-Id: "Technical discussion and general questions about packet filter \(pf\)" List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Mon, 17 Oct 2011 14:55:32 -0000 Damien Fleuriot writes: Hi Damien, > I totally did not understand whatever you're trying to say. > En d'autres termes, j'ai rien compris. Pas grave ;) > What do you call "inside nat" ? The ability to trigger nat via incoming packets (useful in a nat before vpn scenario), just like libalias does when a rule contains the reverse keyword (see ipfw(8)). Inside NAT is the name given on some ciscos for example. Seems Ermal was working on $subject a few months ago. Regards Éric Masson -- 70% de frjv sont des newbies ? Et une fois qu'ils ne le sont plus que font-ils ? Ils quittent frjv parce que c'est trop à chier ? Parce que s'ils y restent et gardent leur comportement, ça devient des neuneux. -+- XB in: - Tu seras un neuneu mon fils -+-