I have a somewhat strange setup (thanks to our provider) which looks like this:
LAN* -> bge0 -> 192.168.0.1 WAN* -> bge1 -> 10.0.2.6 OPT1(DMZ) -> vlan0 -> 62.245.148.129 Yes, the WAN is really 10.0.2.6/30, and the gateway is 10.0.2.5 The provider rewrites the traffic so it appears to come from their own address space. I don't see the point, but that's what they use. What I need to do is rewrite the traffic from LAN which is currently exiting through WAN and is rewritten on the part of the provider to emerge from one of the addresses from our /26 network space. The operative words are SNAT and masquerading, but I haven't been able to see examples of such rewriting rules for pfsense. Any pointers? -- Eugen* Leitl <a href="http://leitl.org">leitl</a> http://leitl.org ______________________________________________________________ ICBM: 48.07100, 11.36820 http://www.ativel.com http://postbiota.org 8B29F6BE: 099D 78BA 2FD3 B014 B08A 7779 75B0 2443 8B29 F6BE
