- Thread Starter
- #26
Oh my.... I used the pf.conf you suggested..
I know.... a lot of efforts... and still not working...
Code:
i="em1"
x="em0"
lan="192.168.2.0/24"
set block-policy return
set skip on lo0
scrub in all fragment reassemble
nat on $x from $i to any -> $x
rdr on $i inet proto tcp from $lan to any port www -> 127.0.0.1 port 3128
antispoof log quick for $x
antispoof log quick for $i
block log all
pass in quick on $i inet proto tcp from $lan to any keep state flags S/SA
pass in quick on $i inet proto { udp icmp } from $lan to any keep state
pass out quick on $x inet proto tcp from $x to any modulate state flags S/SA
pass out quick on $x inet proto {udp icmp } from $x to any keep state
I know.... a lot of efforts... and still not working...