On Fri, 8 Jun 2007, Geraerts Andy wrote:
We have an OpenBSD firewall running for a while now. Since a few days we encounter some sort of selective natting. I try to ping a host, I get reply, and 2 minutes later I try to ping the same host and I dont get replies.
So despite the state being created in both instances, you see a packet egress your external interface with the source address of the internal host instead of the external interface of the NAT box?
~BAS