Re: pf.conf assistance

2020-03-27 Thread Stuart Henderson
On 2020-03-27, Dirk Coetzee wrote: > Hi All, > > Without *block return label "block stateless traffic"* and *pass # establish > keep-state*, my NAT / redirect rules from external into LAN do not work. > Neither do rules that permit RDP to Windows Workstations on Tun0 interface. > FWIW:

pf.conf assistance

2020-03-27 Thread Dirk Coetzee
Hi All, Without *block return label "block stateless traffic"* and *pass # establish keep-state*, my NAT / redirect rules from external into LAN do not work. Neither do rules that permit RDP to Windows Workstations on Tun0 interface. FWIW: Wireguard uses this tun0 interface. TCPDump shows the