On Mon, May 12, 2008 at 2:02 AM, sonjaya <[EMAIL PROTECTED]> wrote: > i want make NAT from ip public to server inside ( with non Ip public > )/dmz without make ip alias. > replacement PIX Fw cisco with PF in openbsd the main point .
You probably want a binat entry for each host in the DMZ with proxy arp entries on the firewall's external interface in /etc/rc.local. -- Michael Richardson <[EMAIL PROTECTED]>