pf NAT and 3 NICs under openbsd 3.3

2003-09-26 Thread John
Hello group I'm running openbsd 3.3 as a firewall/router with PF and I want to run the machine I'm running services on with its own net assignment. It is important that the LAN can see the services machine as well. Can anyone tell me if I have made any errors with the following lines? I have

Re: Broken borrowing in 3.3 pf

2003-09-26 Thread Seth Robertson
In message [EMAIL PROTECTED], Greg Wooledge writes: The particular policy I want isn't very complicated. I have three classes of service to the internet: high, medium, and low. What I would like is for all packets in the high queue to be sent out first, as long as there is

Revised rules question

2003-09-26 Thread Jason Williams
Hello everyone. I have been tweaking some PF rules for a mail gateway server that is going to be on my company's DMZ. What I was hoping to accomplish was the following: 1.) Only allow port 25 traffic to the mail gateway 2.) Allow SSH connections from my intranet 3.) Secure box as much as I can.

Re: pf NAT and 3 NICs under openbsd 3.3

2003-09-26 Thread j knight
Hi John, John wrote: # NAT and redirect nat on $ext_if from { $int_if_dmz, $int_if_lan } to any - ($ext_if) rdr on $ext_if proto tcp from any to any port $tcp_services - ($int_if_dmz) [snip the rest] Would it be neccesary to have a static route from the LAN to the service machine for things

Re: FF - Frame Filter for OpenBSD

2003-09-26 Thread Henning Brauer
On Thu, Sep 25, 2003 at 08:35:42PM +0100, Ste Jones wrote: Example scenario one of my friends runs a dedicated hosting company the users have full root access to each box. the company wishes to tie IP addrs to mac addrs so that each box on the network can not allocate IP addresses