Re: NAT fails to work from internal to external network

2021-12-21 Thread Stuart Henderson
On 2021-12-20, beebeet...@posteo.de wrote: > > pass out on egress from trunk:network to any nat-to egress > > pass out on egress > > Looks like you (incorrectly) assumed that first matching rule wins? I suggest changing this to a "match ... nat-to" rule. You might want to add "inet" unkess you

Re: NAT fails to work from internal to external network

2021-12-20 Thread beebeetles
> pass out on egress from trunk:network to any nat-to egress > pass out on egress Looks like you (incorrectly) assumed that first matching rule wins? On 12/20/21 15:05, Ben Raskin -X (braskin - HIGH TECH GENESIS INC at Cisco) wrote: Hello, Misc; I'm attempting to configure a firewall using

NAT fails to work from internal to external network

2021-12-20 Thread Ben Raskin -X (braskin - HIGH TECH GENESIS INC at Cisco)
Hello, Misc; I'm attempting to configure a firewall using pf and have been having some troubles with NAT. The following is my config set skip on lo block all pass in on trunk from trunk:network to trunk:network pass out on egress from trunk:network to any nat-to egress pass out on egress Where