Re: 4.7 pf: quick and rdr-to/nat-to

2010-05-24 Thread Rene Maroufi
On Mon, May 24, 2010 at 01:24:26AM +0400, Vadim Jukov wrote: > > Then maybe, you'll show us output of: > > 1. cat /etc/pf.conf > 2. pfctl -f /etc/pf.conf && pfctl -sr > 3. pfctl -o none -f /etc/pf.conf && pfctl -sr Today it works without the quick. I don't know why, but it works now. Sorry for

Re: 4.7 pf: quick and rdr-to/nat-to

2010-05-23 Thread Vadim Jukov
2010/5/24 Rene Maroufi : > On Sun, May 23, 2010 at 08:07:38PM +0200, Henning Brauer wrote: >> * Rene Maroufi [2010-05-23 14:04]: >> > Hi, >> > >> > i update my firewall to 4.7 and changed my rdr and nat rules. But there >> > is one thing i don't understand: I use a transparent proxy (Squid) on >>

Re: 4.7 pf: quick and rdr-to/nat-to

2010-05-23 Thread patric conant
Wow, just wow. On Sun, May 23, 2010 at 1:07 PM, Henning Brauer wrote: > * Rene Maroufi [2010-05-23 14:04]: > > Hi, > > > > i update my firewall to 4.7 and changed my rdr and nat rules. But there > > is one thing i don't understand: I use a transparent proxy (Squid) on > > the same machine and in

Re: 4.7 pf: quick and rdr-to/nat-to

2010-05-23 Thread Rene Maroufi
On Sun, May 23, 2010 at 08:07:38PM +0200, Henning Brauer wrote: > * Rene Maroufi [2010-05-23 14:04]: > > Hi, > > > > i update my firewall to 4.7 and changed my rdr and nat rules. But there > > is one thing i don't understand: I use a transparent proxy (Squid) on > > the same machine and in pf.con

Re: 4.7 pf: quick and rdr-to/nat-to

2010-05-23 Thread Henning Brauer
* Rene Maroufi [2010-05-23 14:04]: > Hi, > > i update my firewall to 4.7 and changed my rdr and nat rules. But there > is one thing i don't understand: I use a transparent proxy (Squid) on > the same machine and in pf.conf this rdr-rule: > > pass in quick on $ifklan proto tcp from $klan to ! po

4.7 pf: quick and rdr-to/nat-to

2010-05-23 Thread Rene Maroufi
Hi, i update my firewall to 4.7 and changed my rdr and nat rules. But there is one thing i don't understand: I use a transparent proxy (Squid) on the same machine and in pf.conf this rdr-rule: pass in quick on $ifklan proto tcp from $klan to ! port 80 rdr-to 127.0.0.1 port 3128 This works fine.