OSEC

Neohapsis is currently accepting applications for employment. For more information, please visit our website www.neohapsis.com or email hr@neohapsis.com
 
From: Ryan Thomas McBride (mcbride_at_cvs.openbsd.org)
Date: Fri Nov 22 2002 - 23:22:25 CST

  • Messages sorted by: [ date ] [ thread ] [ subject ] [ author ]

    CVSROOT: /cvs
    Module name: src
    Changes by: mcbridecvs.openbsd.org 2002/11/22 22:22:24

    Modified files:
            sbin/pfctl : parse.y pf_print_state.c pf_print_state.h
                             pfctl.c pfctl_parser.c pfctl_parser.h

    Log message:
    code to support loading of pf rules with multiple redirection addresses
    (in nat, rdr, route-to, dup-to and reply-to)

    Syntax looks like this, see pf.conf(5) for details:

    nat on wi0 proto { tcp, icmp } from any to 192.168.0.2 -> \
    192.168.0.16/29 source-hash random

    rdr on wi0 proto { tcp } from any to 192.168.0.34 port 22 -> \
    { 192.168.0.8/31, 192.168.0.15 } port 22 round-robin

    ok dhartmei henning