PF Packet tagging with route-to in pf.conf

FarukYildiz

New Member


Messages: 2

Code:
nat log (to pflog0) on if0 from 192.168.0.1 tag TAG_PASS tagged TAG_EX -> (if0) label "test"
nat log (to pflog0) on if0 from 192.168.0.1 tag TAG_PASS tagged TAG_EX -> (if0) label "test"
nat log (to pflog0) on if0 from 192.168.0.1 tag TAG_PASS tagged TAG_EX -> (if0) label "test"

no nat from 192.168.0.1 label "test"

# (Some rule, nat etc.)

pass out quick route-to (if0 if_gw0) from 192.168.0.1 tag TAG_EX keep state label "test" probability 33%
pass out quick route-to (if1 if_gw1) from 192.168.0.1 tag TAG_EX keep state label "test" probability 50%
pass out quick route-to (if2 if_gw2) from 192.168.0.1 tag TAG_EX keep state label "test" probability 100%

pass out log (to pflog0) quick all tagged TAG_PASS label "test"


Firstly, i don't want to nat the package.
route-to and tagging package but TAG_EX doesn't move up.
Is there a way to carry the tag up?
 
Top