Hello,
I want to route my jails internal with pf like descriped in: http://forums.freebsd.org/showthread.php?t=30063
pf.conf
fails with:
When I remove the second rdr pass rule it works.
What am I doing wrong/what is missing?
Regards
I want to route my jails internal with pf like descriped in: http://forums.freebsd.org/showthread.php?t=30063
pf.conf
Code:
ext_if="em0"
#jail_if="lo111" #because no use in pf.conf
IP_PUB="192.168.178.10"
NET_JAIL="10.0.0.0/24"
IP_JAIL_WWW="10.0.0.1"
IP_JAIL_BUILD=[B]"[/B]10.0.0.2"
PORT_WWW="{80,443}"
PORT_BUILD=""
scrub in all
nat pass on $ext_if from $NET_JAIL to any -> $IP_PUB
rdr pass on $ext_if proto tcp from any to $IP_PUB port $PORT_WWW -> $IP_JAIL_WWW
rdr pass on $ext_if proto tcp from any to $IP_PUB port $PORT_BUILD -> $IP_JAIL_BUILD
pass out
pass in
fails with:
Code:
# /etc/rc.d/pf restart
Disabling pf.
Enabling pf/etc/pf.conf:19: syntax error
pfctl: Syntax error in config file: pf rules not loaded
.
When I remove the second rdr pass rule it works.
What am I doing wrong/what is missing?
Regards