Stuart Henderson schrieb:

you're probably looking for "reply-to", something along these lines:

pass in quick on gif1 inet to (gif1) reply-to 10.33....@gif1
pass in quick on pppoe0 inet to (pppoe0) reply-to 0.0....@pppoe0

   Yes I was.

Except that the syntax was not exactly clear to me if you want a packet both to redirect-to an internal interface and then reply-to an external interface.

   Now I found out that the following does work:

# Redirect WWW traffic
pass in log quick on $if_wan1 inet proto tcp from any to any \
reply-to ( $if_wan1 $gw_wan1 ) rdr-to $srv_www round-robin

(And similar lines for the other interfaces)

My only "problem" is that the rule resolves to:

> pass in log quick on em0 inet proto tcp from any to any flags S/SA keep state reply-to <ip>@em0

if shown with "pfctl -sr"

In fact pfctl -sr does not show a single redirection, nor does it show that it does redirect to several servers in a round-robin-manner; though obviously it does.

While I'm not perfectly happy with that, at least I'm now in a state of "works for me".

Thank you all.

Marcus

Reply via email to