20 Aug 2012 21:36
Replacement for an outbound pf redirect
Jeff Simmons <jeff <at> j-simmons.net>
2012-08-20 19:36:42 GMT
2012-08-20 19:36:42 GMT
I have an OpenBSD VPN gateway with a Windows (shudder) server behind it with a private IP address. I need to set up a VPN with a remote company that requires that both our gateway and our host have public IP addresses. I am told the Windows server can only set up IP aliases if they are both on the same subnet. Simply, an outbound pf redirect on the internal interface seems to be called for, but the man page says, "If applied outbound, rdr-to to a local IP address is not supported." There are also various dire warnings about trying to do address translation on enc0. I'm probably just missing something simple, but is there an easy way to do this? -- -- Jeff Simmons jeff <at> j-simmons.net Simmons Consulting - Network Engineering, Administration, Security
RSS Feed