Re: dhclient - new IP via DHCP on WAN - NAT dont work

2007-01-18 Thread Max Laier
[ Moving badly filed pf(sense) PR to the more appropriate list ] On Friday 19 January 2007 00:51, Andreas Krauß wrote: > Hi FreeBSD-Team, > > i use "PfSende" a FreeBSD based Firewall-System and have a large > Problem. Please see > > http://cvstrac.pfsense.com/tktview?tn=1207 freebsd-stable@ is cl

carp & spamd problems when using if_bridge + nat

2007-01-18 Thread Tom Uffner
I am trying to build a redundant firewall with a NATed interface and a bridged DMZ interface. Toward this end i have a pair of machines w/ four network interfaces each (bge0, bge1, em0, em1). my first thought was to bridge two of these, assign the outside IP to bridge0, then use the 3rd & 4th for

Re: carp & spamd problems when using if_bridge + nat

2007-01-18 Thread Tom Uffner
Tom Uffner wrote: I am trying to build a redundant firewall with a NATed interface and a bridged DMZ interface. Toward this end i have a pair of machines w/ four network interfaces each (bge0, bge1, em0, em1). sorry, forgot to mention... 6.2-PRERELEASE FreeBSD 6.2-PRERELEASE #0: Sat Jan 6 18:

Re: Using scrub + rdr gre does not work as expected

2007-01-18 Thread Daniel Hartmeier
On Thu, Jan 18, 2007 at 02:55:12PM -0500, Scott Ullrich wrote: > NOTE: 198 is not even an active host on this network. The host does > not exist at all. This seems like a bug. Looks like it. Probably only reproducable with the tunnel, too. You could try to narrow it down further between 'works

Re: Using scrub + rdr gre does not work as expected

2007-01-18 Thread Scott Ullrich
On 1/18/07, Daniel Hartmeier <[EMAIL PROTECTED]> wrote: On Thu, Jan 18, 2007 at 02:55:12PM -0500, Scott Ullrich wrote: > NOTE: 198 is not even an active host on this network. The host does > not exist at all. This seems like a bug. Looks like it. Probably only reproducable with the tunnel, to

Re: Using scrub + rdr gre does not work as expected

2007-01-18 Thread Scott Ullrich
On 1/17/07, Scott Ullrich <[EMAIL PROTECTED]> wrote: Hi, We are trying to track down an issue when using the Frickin PPTP proxy. When we use "scrub in all random-id fragment reassemble" the GRE traffic fails to get rdr'd properly. If we remove the scrub directive the traffic flows as it shou