On May 3, 2006, at 11:15 AM, Erik Hollensbe wrote:

Hopefully someone with experience in PF can help as well, but my question is this:

Well, if anyone cares, here's the solution. (and of course, it has nothing to do with webrick, although I really thought that for a while)

Thanks to those who were helpful despite the fact that this was obviously unlikely rails or ruby related at all.

pf resolves rdr rules in this fashion it seems:

translate the port
check if pass
follow the redirection

My assumption was that a rdr rule would count for a pass, but of course, this makes no sense if the interface has aliases.

The solution was with this rule:

rdr on $ext_if proto tcp from any to $ext_if port 8080 -> 10.0.0.17

to add this rule as well:

pass in quick on $ext_if proto tcp from any to any port 8080 keep state

because this rule is right below it:

block return in quick on $ext_if

:)
--
Erik Hollensbe
[EMAIL PROTECTED]



_______________________________________________
PDXRuby mailing list
[email protected]
IRC: #pdx.rb on irc.freenode.net
http://lists.pdxruby.org/mailman/listinfo/pdxruby

Reply via email to