From owner-freebsd-pf@FreeBSD.ORG Wed Jun 13 02:13:02 2007 Return-Path: X-Original-To: freebsd-pf@freebsd.org Delivered-To: freebsd-pf@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [69.147.83.52]) by hub.freebsd.org (Postfix) with ESMTP id A074016A468 for ; Wed, 13 Jun 2007 02:13:02 +0000 (UTC) (envelope-from freebsdpf@academ.org) Received: from mx6.academ.org (mx6.academ.org [85.118.224.218]) by mx1.freebsd.org (Postfix) with ESMTP id 45D6A13C4AE for ; Wed, 13 Jun 2007 02:13:02 +0000 (UTC) (envelope-from freebsdpf@academ.org) Received: from stronghold.academ.local (stronghold.academ.local [192.168.234.23]) (Authenticated sender: vgi@academ.org) by mx6.academ.org (Postfix) with ESMTP id 2E5ECEBC9F; Wed, 13 Jun 2007 09:12:59 +0700 (NOVST) From: Vasily Ivanov Organization: Academ.org To: freebsd-pf@freebsd.org, freebsd-questions@freebsd.org Date: Wed, 13 Jun 2007 09:13:52 +0700 User-Agent: KMail/1.9.5 References: <70f41ba20706111920x2e9e2d71ma2bcb3dd074daa60@mail.gmail.com> In-Reply-To: <70f41ba20706111920x2e9e2d71ma2bcb3dd074daa60@mail.gmail.com> MIME-Version: 1.0 Content-Disposition: inline Content-Type: text/plain; charset="iso-8859-1" Content-Transfer-Encoding: 7bit Message-Id: <200706130913.53526.freebsdpf@academ.org> X-Virus-Scanned: ClamAV version 0.88.7, clamav-milter version 0.88.7 on mail.academ.org X-Virus-Status: Clean X-Spam-Ystatus: hits=-3.8 R529 R4010 R3466 R2286 R4708 __R3988 R4397 R3261 R2195 R4850 R208 R3260 R4232 __R4747 R3198 R668 R2026 R3496 R3497 __R4335 R3279 R2062 R3262 R2580 R3980 R3989 R4896 X-Spam-Flag: NO X-Spam-Yversion: academ.org Cc: Subject: Re: how 2 address&port map outbound traffic to multiple/different IPs on a single intfc? X-BeenThere: freebsd-pf@freebsd.org X-Mailman-Version: 2.1.5 Precedence: list List-Id: "Technical discussion and general questions about packet filter \(pf\)" List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Wed, 13 Jun 2007 02:13:02 -0000 Hello. On 12 June 2007 09:20, snowcrash+freebsd wrote: [- snip -] > (2) from the POOLS discussion, 'simple' outbound NAT: > > nat on $ext_if from z.z.z.102 port 25 to any -> ($ext_if) > nat on $ext_if from z.z.z.102 port 25 to any -> ($ext_if) > > doesn't do it either - i dno't think -- as $ext_if picks up the > "primary IP" assigned via the pppoe startup, x.x.x.1. You can specify required IP explicitly, like nat on $ext_if from z.z.z.102 port 25 to any -> x.x.x.2 You don't even need aliases on interface (at least it works for my ethernet connection, dunno about pppoe). Just make sure your upstream routes traffic to your x.x.x.x/29 into your box. > > so, i think i'm in the right ballpark with *nat of some sort, but how > do i get this done correctly? > > cheers! > _______________________________________________ > freebsd-pf@freebsd.org mailing list > http://lists.freebsd.org/mailman/listinfo/freebsd-pf > To unsubscribe, send any mail to "freebsd-pf-unsubscribe@freebsd.org" -- wbr, Vasily http://www.academ.org mailto: