pf = Perfectly Frustrating? =)
I am working at a web-host. I have pf setup (using rdr-to) to redirect internet IP's to the local LAN. The problem is that the local boxes see my Internet addy as the source and not the clients internet addy. Traffic is still getting routed correctly, but my SQL logs all show access from _myIP_ and not the real IP.
i.e. My internet IP range = 220.127.116.11 : 18.104.22.168
gateway = 22.214.171.124
www mapped to: 126.96.36.199
mysql = 188.8.131.52
ftp = 184.108.40.206
When a client hits our web-server or sql box the logs on these boxes show "connection from 220.127.116.11" (which is the mapping from pf.conf for that 'service')
I want it to show: "connection from 18.104.22.168" or the clients actual IP
I have been mucking around with the pf.conf rules changing rdr-to into nat-to (and others...) but nothing 'fixes' it.
History: We have an old OpenBSD4.8 box that is currently running as our firewall/gateway. It does this behaviour as desired. I only see this issue on a new OBSDv5.3 that we are trying to migrate to.
|openbsd 5.3 pf|
|Thread||Thread Starter||Forum||Replies||Last Post|
|OpenBSD installation goes perfectly||passthejoe||OpenBSD Installation and Upgrading||4||16th November 2012 02:40 AM|
|OBSD 4.9 Frustrating kernel panic on boot||edwebdev||OpenBSD General||1||16th July 2011 09:37 PM|