[Bug 281871] [pf] "match out on $ext_if proto tcp scrub (min-ttl 128)" modify incoming packets too

[email protected]
Newsgroups gmane.os.freebsd.devel.pf4freebsd
Message-ID <[email protected]/bugzilla/>
https://bugs.freebsd.org/bugzilla/show_bug.cgi?id=281871

Kristof Provost <[email protected]> changed:

           What    |Removed                     |Added
----------------------------------------------------------------------------
                 CC|                            |[email protected]

--- Comment #1 from Kristof Provost <[email protected]> ---
(In reply to Vladimir Druzenko from comment #0)
Unless I'm misunderstanding your report that is expected behaviour.

You're saying all outbound TCP traffic from the gateway needs to have its TTL
set to 128 minimum, and that's what it does.
Traffic from the internet that gets NAT-ed to the LAN client counts as outbound
from the perspective of the gateway, so the min-ttl rule is applied.

-- 
You are receiving this mail because:
You are the assignee for the bug.
lmpx.com only provides a reader for public news (NNTP) servers. It is not affiliated with the servers or forums shown here and is not responsible for the content of articles, which is written by their respective authors.