Nino Dehne wrote:
rdr on vlan4 inet proto tcp from any to any port 80 -> $proxy port 3128 [...]Should states from rdr rules honor set state-policy if-bound? I realize my setup may be ugly, just asking.
They should, yes, if you have a separate "pass on vlan4 XXX keep state" rule.
They might not honor set state-policy if you use "rdr pass". Is it not working? what is the "pfctl -ss" output? Cedric
