Project

General

Profile

Bug #9615 » NAT Rules-Redacted.txt

NAT rules (verbose) - Benjamin Lee, 04/24/2020 01:03 PM

 
1
@0(0) no nat proto carp all
2
  [ Evaluations: 1654      Packets: 0         Bytes: 0           States: 0     ]
3
  [ Inserted: pid 6126 State Creations: 0     ]
4
@1(0) nat-anchor "natearly/*" all
5
  [ Evaluations: 1654      Packets: 0         Bytes: 0           States: 0     ]
6
  [ Inserted: pid 6126 State Creations: 0     ]
7
@2(0) nat-anchor "natrules/*" all
8
  [ Evaluations: 1654      Packets: 0         Bytes: 0           States: 0     ]
9
  [ Inserted: pid 6126 State Creations: 0     ]
10
@3(0) nat on igb0 inet from <tonatsubnets:6> to any port = isakmp -> 47.SPC.MY.IP static-port
11
  [ Evaluations: 1654      Packets: 0         Bytes: 0           States: 0     ]
12
  [ Inserted: pid 6126 State Creations: 0     ]
13
@4(0) nat on igb0 inet6 from <tonatsubnets:6> to any port = isakmp -> (igb0) round-robin static-port
14
  [ Evaluations: 0         Packets: 0         Bytes: 0           States: 0     ]
15
  [ Inserted: pid 6126 State Creations: 0     ]
16
@5(0) nat on igb0 inet from <tonatsubnets:6> to any -> 47.SPC.MY.IP port 1024:65535
17
  [ Evaluations: 892       Packets: 76107     Bytes: 54903733    States: 102   ]
18
  [ Inserted: pid 6126 State Creations: 892   ]
19
@6(0) nat on igb0 inet6 from <tonatsubnets:6> to any -> (igb0) port 1024:65535 round-robin
20
  [ Evaluations: 0         Packets: 0         Bytes: 0           States: 0     ]
21
  [ Inserted: pid 6126 State Creations: 0     ]
22
@7(0) nat on igb1 inet from <tonatsubnets:6> to any port = isakmp -> 99.DSX.MY.IP static-port
23
  [ Evaluations: 519       Packets: 0         Bytes: 0           States: 0     ]
24
  [ Inserted: pid 6126 State Creations: 0     ]
25
@8(0) nat on igb1 inet6 from <tonatsubnets:6> to any port = isakmp -> (igb1) round-robin static-port
26
  [ Evaluations: 0         Packets: 0         Bytes: 0           States: 0     ]
27
  [ Inserted: pid 6126 State Creations: 0     ]
28
@9(0) nat on igb1 inet from <tonatsubnets:6> to any -> 99.DSX.MY.IP port 1024:65535
29
  [ Evaluations: 152       Packets: 2562      Bytes: 931473      States: 72    ]
30
  [ Inserted: pid 6126 State Creations: 152   ]
31
@10(0) nat on igb1 inet6 from <tonatsubnets:6> to any -> (igb1) port 1024:65535 round-robin
32
  [ Evaluations: 0         Packets: 0         Bytes: 0           States: 0     ]
33
  [ Inserted: pid 6126 State Creations: 0     ]
34
@0(0) no rdr proto carp all
35
  [ Evaluations: 4455      Packets: 0         Bytes: 0           States: 0     ]
36
  [ Inserted: pid 6126 State Creations: 0     ]
37
@1(0) rdr-anchor "relayd/*" all
38
  [ Evaluations: 4455      Packets: 0         Bytes: 0           States: 0     ]
39
  [ Inserted: pid 6126 State Creations: 0     ]
40
@2(0) rdr-anchor "tftp-proxy/*" all
41
  [ Evaluations: 4455      Packets: 0         Bytes: 0           States: 0     ]
42
  [ Inserted: pid 6126 State Creations: 0     ]
43
@3(0) rdr pass on LOCAL_NETS inet proto tcp from ! <_DNS_EXCPTN:2> to ! <_LOCAL_NETS:2> port = domain -> 127.0.0.1
44
  [ Evaluations: 4455      Packets: 10        Bytes: 1490        States: 1     ]
45
  [ Inserted: pid 6126 State Creations: 1     ]
46
@4(0) rdr pass on LOCAL_NETS inet proto tcp from ! <_DNS_EXCPTN:2> to ! <_LOCAL_NETS:2> port = 853 -> 127.0.0.1
47
  [ Evaluations: 2157      Packets: 0         Bytes: 0           States: 0     ]
48
  [ Inserted: pid 6126 State Creations: 0     ]
49
@5(0) rdr pass on LOCAL_NETS inet proto udp from ! <_DNS_EXCPTN:2> to ! <_LOCAL_NETS:2> port = domain -> 127.0.0.1
50
  [ Evaluations: 3370      Packets: 276       Bytes: 26476       States: 8     ]
51
  [ Inserted: pid 6126 State Creations: 138   ]
52
@6(0) rdr pass on LOCAL_NETS inet proto udp from ! <_DNS_EXCPTN:2> to ! <_LOCAL_NETS:2> port = 853 -> 127.0.0.1
53
  [ Evaluations: 756       Packets: 0         Bytes: 0           States: 0     ]
54
  [ Inserted: pid 6126 State Creations: 0     ]
55
@7(0) rdr pass on lagg0 inet proto tcp from any to 10.10.10.1 port = http -> 127.0.0.1 port 8081
56
  [ Evaluations: 4054      Packets: 0         Bytes: 0           States: 0     ]
57
  [ Inserted: pid 6126 State Creations: 0     ]
58
@8(0) rdr pass on ix0 inet proto tcp from any to 10.10.10.1 port = http -> 127.0.0.1 port 8081
59
  [ Evaluations: 780       Packets: 0         Bytes: 0           States: 0     ]
60
  [ Inserted: pid 6126 State Creations: 0     ]
61
@9(0) rdr pass on lagg0.90 inet proto tcp from any to 10.10.10.1 port = http -> 127.0.0.1 port 8081
62
  [ Evaluations: 780       Packets: 0         Bytes: 0           States: 0     ]
63
  [ Inserted: pid 6126 State Creations: 0     ]
64
@10(0) rdr pass on LOCAL_NETS inet proto tcp from any to 10.10.10.1 port = http -> 127.0.0.1 port 8081
65
  [ Evaluations: 754       Packets: 0         Bytes: 0           States: 0     ]
66
  [ Inserted: pid 6126 State Creations: 0     ]
67
@11(0) rdr pass on WANS inet proto tcp from any to 10.10.10.1 port = http -> 127.0.0.1 port 8081
68
  [ Evaluations: 754       Packets: 0         Bytes: 0           States: 0     ]
69
  [ Inserted: pid 6126 State Creations: 0     ]
70
@12(0) rdr pass on lagg0 inet proto tcp from any to 10.10.10.1 port = https -> 127.0.0.1 port 8443
71
  [ Evaluations: 1853      Packets: 25910     Bytes: 4676435     States: 976   ]
72
  [ Inserted: pid 6126 State Creations: 1751  ]
73
@13(0) rdr pass on ix0 inet proto tcp from any to 10.10.10.1 port = https -> 127.0.0.1 port 8443
74
  [ Evaluations: 102       Packets: 0         Bytes: 0           States: 0     ]
75
  [ Inserted: pid 6126 State Creations: 0     ]
76
@14(0) rdr pass on lagg0.90 inet proto tcp from any to 10.10.10.1 port = https -> 127.0.0.1 port 8443
77
  [ Evaluations: 102       Packets: 0         Bytes: 0           States: 0     ]
78
  [ Inserted: pid 6126 State Creations: 0     ]
79
@15(0) rdr pass on LOCAL_NETS inet proto tcp from any to 10.10.10.1 port = https -> 127.0.0.1 port 8443
80
  [ Evaluations: 102       Packets: 0         Bytes: 0           States: 0     ]
81
  [ Inserted: pid 6126 State Creations: 0     ]
82
@16(0) rdr pass on WANS inet proto tcp from any to 10.10.10.1 port = https -> 127.0.0.1 port 8443
83
  [ Evaluations: 102       Packets: 0         Bytes: 0           States: 0     ]
84
  [ Inserted: pid 6126 State Creations: 0     ]
85
@17(0) rdr-anchor "miniupnpd" all
86
  [ Evaluations: 2566      Packets: 0         Bytes: 0           States: 0     ]
87
  [ Inserted: pid 6126 State Creations: 0     ]
(2-2/4)