ipfw accepts rules for interfaces that do not (yet) exist, and makes them work seamlessly as the interfaces come and go. However, the 'ipfw nat' addon feature is not compatible with ipfw's interface handling philosophy. Fix: A workaround using cloned_interfaces was suggested. This preemptively creates a dummy interface to satisfy ipfw. How-To-Repeat: # ipfw add 60000 allow via foobar 60000 allow ip from any to any via foobar ^-- works # ipfw nat 100 config if foobar ipfw: unknown interface name foobar ^-- doesn't work
Responsible Changed From-To: freebsd-bugs->freebsd-ipfw Reclassify and assign.
For bugs matching the following criteria: Status: In Progress Changed: (is less than) 2014-06-01 Reset to default assignee and clear in-progress tags. Mail being skipped