[pfSense] NAT Reflection and packet filter

Oliver Schad oliver.schad at automatic-server.com
Mon Feb 20 09:06:42 EST 2012


Hi everybody,

I don't get it - why can I ping an external IP inside a LAN which uses
NAT reflection but I can't use TCP?

The target addresses of the ICMP packets are rewritten to the internal
one and the traffic goes through the pfSense FW on the ethernet level (I
can see the MAC addresses of the pfsense FW on the target as source).

Is this stuff filtered in a special way? Does somebody have a hint to
debug this?

Regards
Oli
-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 198 bytes
Desc: not available
URL: <http://lists.pfsense.org/pipermail/list/attachments/20120220/85977bf3/attachment.bin>


More information about the List mailing list