Dear Martin,

I don't saw any option for "no rdr" rules on
"Firewall: NAT: Port Forward: Edit"

may be  no rdr rule work but pfsense doesn't suppot
this like rules

rule1:

no rdr on em2 inet proto tcp from any to
193.34.133.0/24 port = http -> 193.34.133.75 port 8080

rule2:

rdr on em2 inet proto tcp from any to any port = http
-> 193.34.133.75 port 8080


thanks.



--- "Fuchs, Martin" <[EMAIL PROTECTED]>
wrote:

> Hmmm, perhaps you could define a rule above that
> permits the traffic for this excempt...
> Before the one that redirects the traffic tot he
> transparent proxy...
> Rules are executed from top down...
> 
> Perhaps that could work...
> 
> -----Ursprüngliche Nachricht-----
> Von: Alparslan Ozturk
> [mailto:[EMAIL PROTECTED] 
> Gesendet: Dienstag, 13. November 2007 17:36
> An: [email protected]
> Betreff: [pfSense Support] Yanıt: AW: [pfSense
> Support] Squid Transparent Proxy port forwarding 
> 
> Hi Martin,
> 
> I did you suggestion.but I checked the rules on
> console  the rules like this:
> rdr on em2 inet proto tcp from any to any port =
> http
> -> 193.34.133.75 port 8080
> 
> but I need exceptions for (LAN to DMZ)
> traffic:(!193.34.133.0/24)
> 
> rdr on em2 inet proto tcp from any to
> !193.34.133.0/24
> port = http -> 193.34.133.75 port 8080
> 
> 
> thanks
> 
> 
> 
> 
> --- "Fuchs, Martin" <[EMAIL PROTECTED]>
> wrote:
> 
> > Try something like this...
> > 
> > "Add a portforward at interface OPT2, external
> > adress any (not interface adress), protocol TCP,
> > external port range 80, NAT IP proxy at OPT6,
> local
> > port 80. Save, apply.
> > 
> > 
> > Oh, btw, if your proxy is not at port 80 you can
> use
> > it like this:
> > 
> > Add a portforward at interface OPT2, external
> adress
> > any (not interface adress), protocol TCP, external
> > port range 80, NAT IP proxy at OPT6, local port
> > proxyport. Save, apply."
> > 
> > -----Ursprüngliche Nachricht-----
> > Von: Alparslan Ozturk
> > [mailto:[EMAIL PROTECTED] 
> > Gesendet: Dienstag, 13. November 2007 16:18
> > An: [email protected]
> > Betreff: [pfSense Support] Squid Transparent Proxy
> > port forwarding 
> > 
> > Hi,
> > 
> > I was trying to configure port forwarding rules
> like
> > this:
> > 
> > rdr on em2 inet proto tcp from any to !
> > 193.34.133.0/24 port = http -> 193.34.133.75 port
> > 8080
> > 
> > because em2 my lan interface an I want to forward
> > all
> > 80 port to proxy server(75) but expect
> > 193.34.133.0/24
> > 
> > because this network is my dmz network 
> > 
> > 
> > is this posible do this with gui or must I
> confiugre
> > the /etc/inc/fileter.inc file for above rule.
> > 
> > thanks,
> > 
> > 
> > Alparslan Ozturk
> > [EMAIL PROTECTED]
> > 
> > 
> >       
> >
>
___________________________________________________________________
> > Yahoo! kullaniyor musunuz? 
> http://tr.mail.yahoo.com
> > Istenmeyen postadan biktiniz mi? Istenmeyen
> postadan
> > en iyi korunma 
> > Yahoo! Posta'da
> > 
> >
>
---------------------------------------------------------------------
> > To unsubscribe, e-mail:
> > [EMAIL PROTECTED]
> > For additional commands, e-mail:
> > [EMAIL PROTECTED]
> > 
> > 
> > 
> 
> 
> Alparslan Ozturk
> [EMAIL PROTECTED]
> 
> 
>       
>
___________________________________________________________________
> Yahoo! kullaniyor musunuz?  http://tr.mail.yahoo.com
> Istenmeyen postadan biktiniz mi? Istenmeyen postadan
> en iyi korunma 
> Yahoo! Posta'da
> 
>
---------------------------------------------------------------------
> To unsubscribe, e-mail:
> [EMAIL PROTECTED]
> For additional commands, e-mail:
> [EMAIL PROTECTED]
> 
> 
> 


Alparslan Ozturk
[EMAIL PROTECTED]


      
___________________________________________________________________
Yahoo! kullaniyor musunuz?  http://tr.mail.yahoo.com
Istenmeyen postadan biktiniz mi? Istenmeyen postadan en iyi korunma 
Yahoo! Posta'da

---------------------------------------------------------------------
To unsubscribe, e-mail: [EMAIL PROTECTED]
For additional commands, e-mail: [EMAIL PROTECTED]

Reply via email to