[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]
Re: PF and "route-to"
- To: <misc@openbsd.org>
- Subject: Re: PF and "route-to"
- From: "Luis Cerdas" <luis.cerdas@rawten.net>
- Date: Fri, 07 Jun 2002 09:10:19 -0600
- User-Agent: Microsoft-Outlook-Express-Macintosh-Edition/5.02.2022
> it's just that there's a performance penalty and we don't see much need for
> this - you can NAT on the inner interface.
In our situation (and any others with two or more gateways) this is not a
workable solution as the NAT would take place before the correct route is
selected, so we might end up with a packet natted to the second external
interface, going out the first (or vice-versa).