From owner-freebsd-pf@FreeBSD.ORG Mon Jan 16 08:14:47 2006 Return-Path: X-Original-To: freebsd-pf@freebsd.org Delivered-To: freebsd-pf@freebsd.org Received: from mx1.FreeBSD.org (mx1.freebsd.org [216.136.204.125]) by hub.freebsd.org (Postfix) with ESMTP id AACB016A41F for ; Mon, 16 Jan 2006 08:14:47 +0000 (GMT) (envelope-from iskander@apple-park.kiev.ua) Received: from mail.apple-park.kiev.ua (mail.apple-park.kiev.ua [212.82.221.10]) by mx1.FreeBSD.org (Postfix) with ESMTP id 2C07343D45 for ; Mon, 16 Jan 2006 08:14:46 +0000 (GMT) (envelope-from iskander@apple-park.kiev.ua) Received: from localhost (localhost [127.0.0.1]) by mail.apple-park.kiev.ua (Postfix) with ESMTP id 97D7411417 for ; Mon, 16 Jan 2006 10:14:45 +0200 (EET) Received: from mail.apple-park.kiev.ua ([127.0.0.1]) by localhost (mail.apple-park.kiev.ua [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id 59163-04 for ; Mon, 16 Jan 2006 10:14:44 +0200 (EET) Received: from [10.10.0.20] (sysadmin.main.smk [10.10.0.20]) (using TLSv1 with cipher RC4-SHA (128/128 bits)) (No client certificate requested) by mail.apple-park.kiev.ua (Postfix) with ESMTP id B9FC811412 for ; Mon, 16 Jan 2006 10:14:44 +0200 (EET) Mime-Version: 1.0 (Apple Message framework v746.2) Content-Transfer-Encoding: 7bit Message-Id: <4007E994-E349-44D4-9356-9DF1A5E1098E@apple-park.kiev.ua> Content-Type: text/plain; charset=US-ASCII; delsp=yes; format=flowed To: freebsd-pf@freebsd.org From: Alexander Vyrlanovich Date: Mon, 16 Jan 2006 10:14:55 +0200 X-Mailer: Apple Mail (2.746.2) X-Virus-Scanned: by amavisd-new at apple-park.kiev.ua Subject: pf and pptp X-BeenThere: freebsd-pf@freebsd.org X-Mailman-Version: 2.1.5 Precedence: list List-Id: "Technical discussion and general questions about packet filter \(pf\)" List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Mon, 16 Jan 2006 08:14:47 -0000 Hi All! Last week I moved my firewall from ipfw to pf on a gateway (FreeBSD RELENG_6_0 i386). All work fine except nat'ed pptp connections. Only one PC client can establish pptp VPT at the same time. After some google search I found this article: http://www.benzedrine.cx/pf/msg04961.html. Can anybody confirm, that situation with nating GRE packets with PF still persist or there is something wrong with my firewall rules? Sincerely, Alexander Vyrlanovich