Just so that everyone is on the same page...

Reflection:

... only works on individual port forwards
... does not work with large port ranges (>500)
... may be in a state of flux as we try to alter the code to satisfy
the person who sponsored the feature (and who has still yet to pay)

Scott


On 3/13/06, Ulrik S. Kofod <[EMAIL PROTECTED]> wrote:
> cool! I need to upgrade!
>
> Tim Roberts sagde:
> > I love PFSENSE. You rock like slayer. All works well in Beta 1 for accessing
> > WAN ips from LAN. NO MORE INTERNAL DNS!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!
> > ----- Original Message -----
> > From: "Scott Ullrich" <[EMAIL PROTECTED]>
> > To: <[email protected]>
> > Sent: Monday, March 13, 2006 1:44 PM
> > Subject: Re: [pfSense Support] Reflection Question
> >
> >
> > Reflection is only supported for port forwards, not 1:1.
> >
> > On 3/13/06, Tim Roberts <[EMAIL PROTECTED]> wrote:
> >>
> >> I figured out that Nat Reflection is supported in Beta 2 so sorry about
> >> the
> >> long @ss email early this am. Ive got a test box running and cant seem to
> >> make it work. Anyone feel up to giving me a hint? I have the following for
> >> test setup:
> >>
> >> WAN = 172.26.2.1
> >> LAN = 10.11.12.224
> >>
> >> Virtual IP 1 = 172.26.2.2
> >>
> >> Local PC behind server @ 10.11.12.223 using 224 as its gateway
> >>
> >> 1:1 NAT Statement =172.26.2.2 ----> 10.11.12.223
> >>
> >> WAN Firewall Rule = Allow any from anywhere to 10.11.12.223
> >>
> >> Outsiders can hit 172.26.2.2 just fine
> >> Local PC can get out of firewall and surf etc... just fine.
> >> Local PC can ping 172.26.2.1 but not 172.26.2.2 (In theory itself) nor
> >> access http or anything else I have tried.
> >>
> >> Pretty Please? Last time I said that I promossied to leave you alone for a
> >> long time and I have :)
> >>
> >> Much thanks in advance!
> >>
> >> Tim
> >>
> >
> > ---------------------------------------------------------------------
> > To unsubscribe, e-mail: [EMAIL PROTECTED]
> > For additional commands, e-mail: [EMAIL PROTECTED]
> >
> >
> >
> >
> >
> > ---------------------------------------------------------------------
> > To unsubscribe, e-mail: [EMAIL PROTECTED]
> > For additional commands, e-mail: [EMAIL PROTECTED]
> >
> >
>
>
> --
>
>
> ---------------------------------------------------------------------
> To unsubscribe, e-mail: [EMAIL PROTECTED]
> For additional commands, e-mail: [EMAIL PROTECTED]
>
>

---------------------------------------------------------------------
To unsubscribe, e-mail: [EMAIL PROTECTED]
For additional commands, e-mail: [EMAIL PROTECTED]

Reply via email to