- 论坛徽章:
- 0
|
pf.conf Configuration
In pf.conf, the following changes need to be made.
In the top portion where you set skip on your internal interfaces, remove those lines. They tell the pf filter not to do any processing on packets coming in on an internal interface.
#set skip on $int_if << These lines commented out
#set skip on $wi_if
# redirect only IPv4 web traffic to squid
rdr pass $init proto tcp from $net to any port 80 -> $squidserver port 3129
block in
pass in quick on $int_if
pass in quick on $wi_if
pass out keep state
不要用on用pass就可以了 |
|