Skip site navigation (1)Skip section navigation (2)
Date:      Wed, 01 Dec 2004 10:29:07 +0200
From:      Claudiu Dragalia-Paraipan <dr.clau@gmail.com>
To:        Robert M <mirobercik@yahoo.com>
Cc:        freebsd-pf@freebsd.org
Subject:   Re: 3 gateways problem
Message-ID:  <41AD80D3.3090005@gmail.com>
In-Reply-To: <20041130220750.75198.qmail@web52202.mail.yahoo.com>
References:  <20041130220750.75198.qmail@web52202.mail.yahoo.com>

next in thread | previous in thread | raw e-mail | index | archive | help
This is an OpenPGP/MIME signed message (RFC 2440 and 3156)
--------------enig35989E87B6FF80149BB7A688
Content-Type: text/plain; charset=ISO-8859-1; format=flowed
Content-Transfer-Encoding: 7bit

Try to add 'flags S/SA' to your route-to rules. If it does not work,
watch with pfctl -vsr and -vsn which rules you hit and when.
Check if states are created for connection coming from outside with 
pfctl -ss.

Regards,


Robert M wrote:
> Hi, 
> 
> Thank your for your reply.
> 
> I have read the manual before.
> 
> I did try adding the following lines to 
> the end of my pf.conf file, but this didn't help
> though.
> 
> ---
> pass out on $ifDSL1 route-to ($ifDSL2 $gwDSL2) from
> $ifDSL2 to any
> pass out on $ifDSL1 route-to ($ifDSL3 $gwDSL3) from
> $ifDSL3 to any
> pass out on $ifDSL2 route-to ($ifDSL1 $gwDSL1) from
> $ifDSL1 to any
> pass out on $ifDSL2 route-to ($ifDSL3 $gwDSL3) from
> $ifLimes to any
> pass out on $ifDSL3 route-to ($ifDSL1 $gwDSL1) from
> $ifDSL1 to any
> pass out on $ifDSL3 route-to ($ifDSL2 $gwDSL2) from
> $ifDSL2 to any
> ----
> 
> Maybe I misunderstood the 'meaning' of these rules ?
> 
> I'm suspecting a "bug" in pf.conf file :-(
> 
> Ps. do you know any website where I can learn
> about advanced pf/altq networking ?
> I would like to simply limit internet speed
> to 256Kbit/s with priq in each queue to every user on
> my 2Mbit line. 
> 
> Thank you!
> 
> Regards,
> 


-- 
Claudiu Dragalina-Paraipan
dr.clau@gmail.com


--------------enig35989E87B6FF80149BB7A688
Content-Type: application/pgp-signature; name="signature.asc"
Content-Description: OpenPGP digital signature
Content-Disposition: attachment; filename="signature.asc"

-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.2.6 (FreeBSD)
Comment: Using GnuPG with Thunderbird - http://enigmail.mozdev.org

iD8DBQFBrYDYm0FWxb+swkQRAn8kAKCH8nISJTh+gJear5S+aersQJLJmACfWnnw
UxjTfJ+2jw3aA9/Rg4XGSvM=
=KJRn
-----END PGP SIGNATURE-----

--------------enig35989E87B6FF80149BB7A688--



Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?41AD80D3.3090005>