Thread: nat HELP
View Single Post
  #9   (View Single Post)  
Old 2nd February 2009
jggimi's Avatar
jggimi jggimi is offline
More noise than signal
 
Join Date: May 2008
Location: USA
Posts: 7,977
Default

The "alteration" you describe from the PF user's guide was an *intentional* port redirection to a new port number (80 -> 8000). That doesn't apply to your situation. None of your destination port numbers are changed in the rdr rules you've published in this thread.

Packet normalization ("scrub") was not enabled in your original pf.conf in post #4, above. It was one of my guesses as to a possible source to your problem. Now that you have it enabled, per post #8, packet normalization can change packets destined for your private network. According to the PF Users Guide:
Quote:
...some multi-player games have connection problems passing through PF with scrub enabled.
My next guess, as guess it is...is that you're missing some necessary ports in your redirect list.

To confirm this possibility, you must analyze the packets entering your external interface with a tool such as tcpdump(1), and compare that with the packets being passed to your internal interface. Not only will it show you if your remote game server is sending packets to ports you've not listed, it will show you if the packets are being redirected as you expect.
Reply With Quote