<?xml version="1.0" encoding="koi8-r"?>
<rss version="0.91">
<channel>
    <title>OpenForum RSS: PF FreeBSD два ISP два VLAN </title>
    <link>https://ns.opennet.dev/openforum/vsluhforumID1/96130.html</link>
    <description>Помогите пожалуйста натировать трафик с одного vlan8 в IPS1 а с vlan6-13 в ISP2.&lt;br&gt;Вроде читаю и делаю но ничего не получаеться. &lt;br&gt;&lt;br&gt;тут читал &lt;br&gt;http://dreamcatcher.ru/2009/12/28/   pf-Часть-2-Расширенная-конфигурация&lt;br&gt;&lt;br&gt;получалось только так &lt;br&gt;&lt;br&gt;ext_if1 = &quot;igb0&quot;&lt;br&gt;ext_if2 = &quot;vlan4&quot;&lt;br&gt;ext_gw1 = &quot;26.74.250.1&quot;&lt;br&gt;ext_gw2 = &quot;6.38.18.1&quot;&lt;br&gt;&lt;br&gt;&lt;br&gt;&lt;br&gt;set limit states 16000000&lt;br&gt;set optimization aggressive&lt;br&gt;set limit src-nodes 160000&lt;br&gt;set limit table-entries 160000&lt;br&gt;nat-anchor &quot;ftp-proxy/*&quot;&lt;br&gt;&lt;br&gt;&lt;br&gt;nat on $ext_if1 from 10.8.0.0/20 to any -&amp;gt; $ext_if2  (клиенты под сети жалуются на пинг)&lt;br&gt;nat on $ext_if1 from 10.0.0.0/8 to any -&amp;gt; $ext_if1&lt;br&gt;&lt;br&gt;#  route packets from any IPs on $ext_if1 to $ext_gw1 and the same for $ext_if2 and $ext_gw2&lt;br&gt;pass out on $ext_if1 route-to ($ext_if2 $ext_gw2) from $ext_if2 to any&lt;br&gt;pass out on $ext_if2 route-to ($ext_if1 $ext_gw1) from $ext_if1 to any&lt;br&gt;&lt;br&gt;&lt;br&gt;10.8 улетает на isp2 &lt;br&gt;&lt;br&gt;10.6&lt;br&gt;10.11&lt;br&gt;10.13  на isp1 &lt;br&gt;&lt;br&gt;мне нужно грубо раскидать вланы по каналам. &lt;br&gt;</description>

<item>
    <title>PF FreeBSD два ISP два VLAN  (isvd)</title>
    <link>https://ns.opennet.dev/openforum/vsluhforumID1/96130.html#1</link>
    <pubDate>Tue, 12 May 2015 12:42:55 GMT</pubDate>
    <description>вроде так работает. прокоментируйте. &lt;br&gt;&lt;br&gt;&lt;br&gt;ext_if1 = &quot;igb0&quot;&lt;br&gt;ext_if2 = &quot;vlan4&quot;&lt;br&gt;ext_gw1 = &quot;xx.xx.250.1&quot;&lt;br&gt;ext_gw2 = &quot;xx.xx.18.1&quot;&lt;br&gt;lan_net = &quot;10.0.0.0/8&quot;&lt;br&gt;&lt;br&gt;&lt;br&gt;set limit states 16000000&lt;br&gt;set optimization aggressive&lt;br&gt;set limit src-nodes 160000&lt;br&gt;set limit table-entries 160000&lt;br&gt;nat-anchor &quot;ftp-proxy/*&quot;&lt;br&gt;&lt;br&gt;&lt;br&gt;nat on $ext_if1 from 10.6.0.0/20 to any -&amp;gt; $ext_if1&lt;br&gt;nat on $ext_if1 from 10.11.0.0/20 to any -&amp;gt; $ext_if1&lt;br&gt;nat on $ext_if1 from 10.13.0.0/20 to any -&amp;gt; $ext_if1&lt;br&gt;nat on $ext_if1 from 10.18.0.0/20 to any -&amp;gt; $ext_if1&lt;br&gt;&lt;br&gt;nat on $ext_if2 from 10.8.0.0/20 to any -&amp;gt; $ext_if2&lt;br&gt;&lt;br&gt;&lt;br&gt;&lt;br&gt;#проброс без балансировки (согласно списку адресов)&lt;br&gt;pass in quick on vlan6 route-to ($ext_if1 $ext_gw1) from 10.6.0.0/20 to !$lan_net keep state&lt;br&gt;pass in quick on vlan8 route-to ($ext_if2 $ext_gw2) from 10.8.0.0/20 to !$lan_net keep state&lt;br&gt;pass in quick on vlan11 route-to ($ext_if1 $ext_gw1) from 10.11.0.0/20 to !$lan_net keep state&lt;br&gt;pass in quick on vlan13 route-to ($ext_if1 $ext_gw1) from 10.13.0.0/20 to !$lan_net keep state&lt;br&gt;pass in quic</description>
</item>

</channel>
</rss>
