On Wed, 2012-08-01 at 17:49 +0300, Gregory Edigarov wrote: > On 08/01/2012 05:13 PM, Graham Stephens wrote: > > pass in log quick on egress inet proto tcp to any port smtp rdr-to 10.0.0.2 >
Gregory, you're a genius! I thought I'd tried every possible combination of parameters, but must have missed this one. It does make sense now I think about it; I'm passing the packet to the server nic, not the nic on the firewall. Thanks, Graham.