On Thu, 14 Dec 2017 21:27:17 +0100
"Peter N. M. Hansteen" <[email protected]> wrote:

> We're in the process of preparing for upcoming conferences with
> updates to the ever-in-progress PF tutorial. 
> 
> If you have thoughts on what you would like to see in a tutorial
> session and would like to share them either with me or the list, we
> would love to hear from you.

I'd love to see a step by step creation of a NATting firewall, with
exact explanations of each step.

I'd like to see a version with IPV4 on the Internet side, and one with
IPV6 on the Internet side. https://home.nuug.no/~peter/pftutorial/ does
a pretty good job of it, but is very lacking in explanations. Tutorials
are for people who currently know nothing, so a word by word
explanation should be given for both of these lines:

* match out on egress inet nat-to ($ext_if)
* pass proto tcp from { self, $int_if:network }

There are many other places needing explanations. If you could include
a few diagrams to make the point, that would help immensely.
 
SteveT

Steve Litt 
December 2017 featured book: Thriving in Tough Times
http://www.troubleshooters.com/thrive

Reply via email to