Add the 'inet' keyword after the nat rule to avoid interfering with
IPv6.
This commit is contained in:
parent
8a5e58a68d
commit
4ba82b1743
@ -26,7 +26,7 @@ set skip on lo
|
||||
scrub in
|
||||
|
||||
# nat/rdr
|
||||
nat on $ext_if from !($ext_if) -> ($ext_if:0)
|
||||
nat on $ext_if inet from !($ext_if) -> ($ext_if:0)
|
||||
nat-anchor "ftp-proxy/*"
|
||||
rdr-anchor "ftp-proxy/*"
|
||||
|
||||
|
@ -16,7 +16,7 @@
|
||||
|
||||
#nat-anchor "ftp-proxy/*"
|
||||
#rdr-anchor "ftp-proxy/*"
|
||||
#nat on $ext_if from !($ext_if) -> ($ext_if:0)
|
||||
#nat on $ext_if inet from !($ext_if) -> ($ext_if:0)
|
||||
#rdr pass on $int_if proto tcp to port ftp -> 127.0.0.1 port 8021
|
||||
#no rdr on $ext_if proto tcp from <spamd-white> to any port smtp
|
||||
#rdr pass on $ext_if proto tcp from any to any port smtp \
|
||||
|
Loading…
Reference in New Issue
Block a user