Re: Large scale NAT with PF - some weird problem

2015-06-21 Thread Ian FREISLICH
Milan Obuch wrote: > Ian FREISLICH wrote: > > > How many NAT states in your table? > > How can I find out? Is there another statistics collected I can gert > out of pfctl? pfctl -s nat -v Ian -- Ian Freislich ___ freebsd-pf@freebsd.org mailing list

Re: Large scale NAT with PF - some weird problem

2015-06-21 Thread Milan Obuch
On Sun, 21 Jun 2015 07:19:51 -0400 Ian FREISLICH wrote: > Milan Obuch wrote: > > Ian FREISLICH wrote: > > > > > How many NAT states in your table? > > > > How can I find out? Is there another statistics collected I can gert > > out of pfctl? > > pfctl -s nat -v > > Ian > My nat rule evalua

Re: Large scale NAT with PF - some weird problem

2015-06-21 Thread Ian FREISLICH
Milan Obuch wrote: > On Sun, 21 Jun 2015 07:19:51 -0400 > Ian FREISLICH wrote: > > > Milan Obuch wrote: > > > Ian FREISLICH wrote: > > > > > > > How many NAT states in your table? > > > > > > How can I find out? Is there another statistics collected I can gert > > > out of pfctl? > > > > pfct

Re: adding an additional block & gateway

2015-06-21 Thread Kajetan Staszkiewicz
Dnia piÄ…tek, 19 czerwca 2015 11:38:10 Chuck @ Mantis pisze: > Our data center responded to your question, here is the text: > > We can confirm that the new netblock is routed direct via your vlan as with > your original netblock > > VLAN: vlan655-cbcbmedi-809, Created at: Mon Oct 20 13:42:05 2014

Re: Large scale NAT with PF - some weird problem

2015-06-21 Thread Milan Obuch
On Sun, 21 Jun 2015 08:38:04 -0400 Ian FREISLICH wrote: [ snip ] > > One observation, on pfctl -vs info output - when src-limit counters > > rises to 30 or so, I am getting first messages someone has problem. > > Is it only coincidence or is there really some relation to my > > problem? > > Per