From owner-freebsd-questions@FreeBSD.ORG Tue Sep 25 14:47:42 2007 Return-Path: Delivered-To: freebsd-questions@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2001:4f8:fff6::34]) by hub.freebsd.org (Postfix) with ESMTP id D7B3616A419 for ; Tue, 25 Sep 2007 14:47:42 +0000 (UTC) (envelope-from freebsd@dfwlp.com) Received: from pollux.dfwlp.com (rrcs-64-183-212-244.sw.biz.rr.com [64.183.212.244]) by mx1.freebsd.org (Postfix) with ESMTP id 8DA6413C480 for ; Tue, 25 Sep 2007 14:47:42 +0000 (UTC) (envelope-from freebsd@dfwlp.com) Received: from [192.168.125.138] ([192.168.125.138]) (authenticated bits=0) by pollux.dfwlp.com (8.13.8/8.13.8) with ESMTP id l8PEl4R0078834 for ; Tue, 25 Sep 2007 09:47:19 -0500 (CDT) (envelope-from freebsd@dfwlp.com) From: Jonathan Horne To: freebsd-questions@freebsd.org Date: Tue, 25 Sep 2007 09:46:58 -0500 User-Agent: KMail/1.9.7 MIME-Version: 1.0 Content-Type: text/plain; charset="us-ascii" Content-Transfer-Encoding: 7bit Content-Disposition: inline Message-Id: <200709250946.58855.freebsd@dfwlp.com> X-Spam-Status: No, score=-3.3 required=3.6 tests=ALL_TRUSTED,BAYES_00, URIBL_RHS_DOB autolearn=no version=3.2.3 X-Spam-Checker-Version: SpamAssassin 3.2.3 (2007-08-08) on pollux.dfwlp.com Subject: pf redirect question X-BeenThere: freebsd-questions@freebsd.org X-Mailman-Version: 2.1.5 Precedence: list List-Id: User questions List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Tue, 25 Sep 2007 14:47:42 -0000 i have a server at my office i need to decomission, only problem, there are a handful of client that are still talking to it. i was wondering if it feasable to down the server, take its IP and stick it on our FreeBSD server, and then use pf with rdr statements to redirect any traffic from stragglers to the service on the other new server? i was trying to to proof it with a line like this in my pf.conf on my laptop: rdr on $ext_if proto tcp from any to $ext_if port 80 -> 10.22.192.131 port 8080 just to see if i could get an http request to my laptop to redirect over to the 8080 on the other ip, but so far nothing. a) is what im trying to do... tcpifically possible? b) if yes, can someone point me in the right direction? thanks, -- Jonathan Horne http://dfwlpiki.dfwlp.org freebsd@dfwlp.com