[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

Re: PF and "route-to"



> it's just that there's a performance penalty and we don't see much need for
> this - you can NAT on the inner interface.

In our situation (and any others with two or more gateways) this is not a
workable solution as the NAT would take place before the correct route is
selected, so we might end up with a packet natted to the second external
interface, going out the first (or vice-versa).