For Test #1 you are correct that to solely test if the fwd was terminating the
search the rule should have been
add 13 deny log logamount 5 tcp from 192.168.1.0/24{1-5,7-254} to any dst-port
80 in via igb0
I went ahead and tested that and YES the search does properly terminate.
The rule that
On Tue, 7 Jun 2016 00:53:23 +0300, Andrey V. Elsukov wrote:
> On 06.06.16 22:41, Lev Serebryakov wrote:
> >
> > I still hope to see https://reviews.freebsd.org/D1776 committed before
> > 11-RELEASE.
> >
> > It seems to me, that I does everything what was requested by reviewers.
>
> Hi
On 07.06.16 09:31, wishmaster wrote:
>> With the following patch you will be able create two different states, I
>> think, and solve your task with NAT and dynamic rules:
>> https://reviews.freebsd.org/D6674
>
> Will there be the patch in the 11-RELEASE?
Hi,
there are three patches for ipfw, tha