Re: ipfw fwd sends to port but also through gateway

2016-06-07 Thread Adonis Peralta
For Test #1 you are correct that to solely test if the fwd was terminating the search the rule should have been add 13 deny log logamount 5 tcp from 192.168.1.0/24{1-5,7-254} to any dst-port 80 in via igb0 I went ahead and tested that and YES the search does properly terminate. The rule that

Re: IPFW: more "orthogonal? state operations, push into 11?

2016-06-07 Thread Ian Smith
On Tue, 7 Jun 2016 00:53:23 +0300, Andrey V. Elsukov wrote: > On 06.06.16 22:41, Lev Serebryakov wrote: > > > > I still hope to see https://reviews.freebsd.org/D1776 committed before > > 11-RELEASE. > > > > It seems to me, that I does everything what was requested by reviewers. > > Hi

Re: IPFW: more "orthogonal? state operations, push into 11?

2016-06-07 Thread Andrey V. Elsukov
On 07.06.16 09:31, wishmaster wrote: >> With the following patch you will be able create two different states, I >> think, and solve your task with NAT and dynamic rules: >> https://reviews.freebsd.org/D6674 > > Will there be the patch in the 11-RELEASE? Hi, there are three patches for ipfw,

Re[2]: IPFW: more "orthogonal? state operations, push into 11?

2016-06-07 Thread wishmaster
Hi, > With the following patch you will be able create two different states, I > think, and solve your task with NAT and dynamic rules: > https://reviews.freebsd.org/D6674 Will there be the patch in the 11-RELEASE? -- Vitaliy ___