Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    [РЕШЕНО]Не работает торрент клиент

    Scheduled Pinned Locked Moved Russian
    61 Posts 6 Posters 33.9k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • E
      Eugene
      last edited by

      @freak999:

      @Evgeny:

      хм… что-то ng0 вообще не видать. Ты используешь мой пакет? какой версии?

      dhcp-pptp v 0.43

      Каюсь, port-forward не тестировал, думал и так должно работать. Вечером проверю.

      http://ru.doc.pfsense.org

      1 Reply Last reply Reply Quote 0
      • F
        freak999
        last edited by

        @Evgeny:

        @freak999:

        @Evgeny:

        хм… что-то ng0 вообще не видать. Ты используешь мой пакет? какой версии?

        dhcp-pptp v 0.43

        Каюсь, port-forward не тестировал, думал и так должно работать. Вечером проверю.

        Буду ждать результатов.

        1 Reply Last reply Reply Quote 0
        • E
          Eugene
          last edited by

          Новая версия 0.44. Если не сработает то пожалуйста

          ifconfig
          netstat -rn
          pfctl -sr
          pfctl -sn
          

          http://ru.doc.pfsense.org

          1 Reply Last reply Reply Quote 0
          • F
            freak999
            last edited by

            На почту скинешь?

            1 Reply Last reply Reply Quote 0
            • E
              Eugene
              last edited by

              @freak999:

              На почту скинешь?

              скинул. У тебя ж инет есть, почему нормальным способом не апдейтишь пакет?

              http://ru.doc.pfsense.org

              1 Reply Last reply Reply Quote 0
              • F
                freak999
                last edited by

                $ ifconfig
                xl0: flags=8843 <up,broadcast,running,simplex,multicast>metric 0 mtu 1500
                	options=9 <rxcsum,vlan_mtu>ether 00:04:75:9e:0d:63
                	inet 192.168.9.1 netmask 0xffffff00 broadcast 192.168.9.255
                	inet6 fe80::204:75ff:fe9e:d63%xl0 prefixlen 64 scopeid 0x1 
                	media: Ethernet autoselect (100baseTX <full-duplex>)
                	status: active
                xl1: flags=8843 <up,broadcast,running,simplex,multicast>metric 0 mtu 1500
                	options=9 <rxcsum,vlan_mtu>ether 00:0e:a6:21:30:d2
                	inet6 fe80::20e:a6ff:fe21:30d2%xl1 prefixlen 64 scopeid 0x2 
                	inet 172.17.133.110 netmask 0xfffffc00 broadcast 172.17.135.255
                	media: Ethernet autoselect (100baseTX <full-duplex>)
                	status: active
                lo0: flags=8049 <up,loopback,running,multicast>metric 0 mtu 16384
                	inet 127.0.0.1 netmask 0xff000000 
                	inet6 ::1 prefixlen 128 
                	inet6 fe80::1%lo0 prefixlen 64 scopeid 0x3 
                enc0: flags=0<> metric 0 mtu 1536
                pfsync0: flags=41 <up,running>metric 0 mtu 1460
                	pfsync: syncdev: lo0 syncpeer: 224.0.0.240 maxupd: 128
                pflog0: flags=100 <promisc>metric 0 mtu 33204
                ng0: flags=88d1 <up,pointopoint,running,noarp,simplex,multicast>metric 0 mtu 1500
                	inet 10.100.24.106 --> 172.17.0.1 netmask 0xffffffff 
                	inet6 fe80::204:75ff:fe9e:d63%ng0 prefixlen 64 scopeid 0x7</up,pointopoint,running,noarp,simplex,multicast></promisc></up,running></up,loopback,running,multicast></full-duplex></rxcsum,vlan_mtu></up,broadcast,running,simplex,multicast></full-duplex></rxcsum,vlan_mtu></up,broadcast,running,simplex,multicast> 
                
                $ netstat -rn
                Routing tables
                
                Internet:
                Destination        Gateway            Flags    Refs      Use  Netif Expire
                default            172.17.0.1         UGS         0     5727    ng0
                10.100.24.106      lo0                UHS         0        0    lo0
                127.0.0.1          127.0.0.1          UH          1        0    lo0
                172.17.0.1         10.100.24.106      UH          1        0    ng0
                172.17.132.0/22    link#2             UC          0        0    xl1
                172.17.132.1       00:30:48:dc:a2:e4  UHLW        2       54    xl1   1196
                172.17.133.110     127.0.0.1          UGHS        0        0    lo0
                192.168.9.0/24     link#1             UC          0        0    xl0
                192.168.9.9        18:a9:05:8b:5c:87  UHLW        1     3186    xl0    857
                213.110.96.6       172.17.132.1       UGHS        0     6238    xl1
                
                Internet6:
                Destination                       Gateway                       Flags      Netif Expire
                ::1                               ::1                           UHL         lo0
                fe80::%xl0/64                     link#1                        UC          xl0
                fe80::204:75ff:fe9e:d63%xl0       00:04:75:9e:0d:63             UHL         lo0
                fe80::%xl1/64                     link#2                        UC          xl1
                fe80::20e:a6ff:fe21:30d2%xl1      00:0e:a6:21:30:d2             UHL         lo0
                fe80::%lo0/64                     fe80::1%lo0                   U           lo0
                fe80::1%lo0                       link#3                        UHL         lo0
                fe80::%ng0/64                     link#7                        UC          ng0
                fe80::204:75ff:fe9e:d63%ng0       link#7                        UHL         lo0
                ff01:1::/32                       link#1                        UC          xl0
                ff01:2::/32                       link#2                        UC          xl1
                ff01:3::/32                       ::1                           UC          lo0
                ff01:7::/32                       link#7                        UC          ng0
                ff02::%xl0/32                     link#1                        UC          xl0
                ff02::%xl1/32                     link#2                        UC          xl1
                ff02::%lo0/32                     ::1                           UC          lo0
                ff02::%ng0/32                     link#7                        UC          ng0
                
                $ pfctl -sr
                scrub all random-id fragment reassemble
                anchor "ftpsesame/*" all
                anchor "firewallrules" all
                block drop quick proto tcp from any port = 0 to any
                block drop quick proto tcp from any to any port = 0
                block drop quick proto udp from any port = 0 to any
                block drop quick proto udp from any to any port = 0
                block drop quick from <snort2c> to any label "Block snort2c hosts"
                block drop quick from any to <snort2c> label "Block snort2c hosts"
                block drop in quick inet6 all
                block drop out quick inet6 all
                anchor "loopback" all
                pass in quick on lo0 all flags S/SA keep state label "pass loopback"
                pass out quick on lo0 all flags S/SA keep state label "pass loopback"
                anchor "packageearly" all
                anchor "carp" all
                pass quick inet proto icmp from 172.17.133.110 to any keep state
                anchor "dhcpserverlan" all
                pass in quick on xl0 inet proto udp from any port = bootpc to 255.255.255.255 port = bootps keep state label "allow access to DHCP server on LAN"
                pass in quick on xl0 inet proto udp from any port = bootpc to 192.168.9.1 port = bootps keep state label "allow access to DHCP server on LAN"
                pass out quick on xl0 inet proto udp from 192.168.9.1 port = bootps to any port = bootpc keep state label "allow access to DHCP server on LAN"
                anchor "wandhcp" all
                pass out quick on xl1 proto udp from any port = bootpc to any port = bootps keep state label "allow dhcp client out wan"
                block drop in log quick on xl1 inet proto udp from any port = bootps to 192.168.9.0/24 port = bootpc label "block dhcp client out wan"
                block drop in on ! xl0 inet from 192.168.9.0/24 to any
                block drop in inet from 192.168.9.1 to any
                block drop in on xl0 inet6 from fe80::204:75ff:fe9e:d63 to any
                anchor "spoofing" all
                anchor "limitingesr" all
                block drop in quick from <virusprot> to any label "virusprot overload table"
                pass out quick on xl0 proto icmp all keep state label "let out anything from firewall host itself"
                pass out quick on xl1 proto icmp all keep state label "let out anything from firewall host itself"
                pass out quick on xl1 all flags S/SA keep state (tcp.closed 5) label "let out anything from firewall host itself"
                anchor "firewallout" all
                pass out quick on xl1 all flags S/SA keep state label "let out anything from firewall host itself"
                pass out quick on xl0 all flags S/SA keep state label "let out anything from firewall host itself"
                pass out quick on ng0 all flags S/SA keep state label "let out anything from firewall host itself"
                pass out quick on enc0 all flags S/SA keep state label "IPSEC internal host to host"
                pass out quick on ng0 proto icmp all keep state (tcp.closed 5) label "let out anything from firewall host itself"
                pass out quick on ng0 all flags S/SA keep state (tcp.closed 5) label "let out anything from firewall host itself"
                anchor "anti-lockout" all
                pass in quick on xl0 inet from any to 192.168.9.1 flags S/SA keep state label "anti-lockout web rule"
                block drop in log quick proto tcp from <sshlockout> to any port = ssh label "sshlockout"
                anchor "ftpproxy" all
                anchor "pftpx/*" all
                pass in quick on ng0 inet proto tcp from any port = 8888 to 192.168.9.9 port = 8888 flags S/SA keep state label "USER_RULE"
                pass in quick on ng0 inet proto udp from any port = 8888 to 192.168.9.9 port = 8888 keep state label "USER_RULE"
                pass in quick on xl0 inet from 192.168.9.0/24 to any flags S/SA keep state label "USER_RULE: Default LAN -> any"
                pass in quick on xl0 inet proto icmp all keep state label "USER_RULE"
                pass in quick on xl0 inet proto tcp from 192.168.9.9 to any port = domain flags S/SA keep state label "USER_RULE"
                pass in quick on xl0 inet proto tcp from 192.168.9.9 to any port = http flags S/SA keep state label "USER_RULE"
                pass in quick on xl0 inet proto tcp from 192.168.9.9 to any port >= 1024 flags S/SA keep state label "USER_RULE"
                pass in quick on xl0 inet proto udp from 192.168.9.9 to any port >= 1024 keep state label "USER_RULE"
                pass in quick on xl0 inet proto tcp from any to 127.0.0.1 port = ftp-proxy flags S/SA keep state label "FTP PROXY: Allow traffic to localhost"
                pass in quick on xl0 inet proto tcp from any to 127.0.0.1 port = ftp flags S/SA keep state label "FTP PROXY: Allow traffic to localhost"
                pass in quick on xl1 inet proto tcp from any port = ftp-data to (xl1) port > 49000 flags S/SA keep state label "FTP PROXY: PASV mode data connection"
                pass in quick on ng0 inet proto tcp from any to 127.0.0.1 port = 8022 flags S/SA keep state label "FTP PROXY: Allow traffic to localhost"
                pass in quick on ng0 inet proto tcp from any to 127.0.0.1 port = ftp flags S/SA keep state label "FTP PROXY: Allow traffic to localhost"
                anchor "imspector" all
                anchor "miniupnpd" all
                block drop in log quick all label "Default deny rule"
                block drop out log quick all label "Default deny rule"</sshlockout></virusprot></snort2c></snort2c>
                
                $ pfctl -sn
                nat-anchor "pftpx/*" all
                nat-anchor "natearly/*" all
                nat-anchor "natrules/*" all
                nat on xl1 inet from 192.168.9.0/24 port = isakmp to any port = isakmp -> (xl1) port 500 round-robin
                nat on xl1 inet from 192.168.9.0/24 port = 5060 to any port = 5060 -> (xl1) port 5060 round-robin
                nat on xl1 inet from 192.168.9.0/24 to any -> (xl1) port 1024:65535 round-robin
                rdr-anchor "pftpx/*" all
                rdr-anchor "slb" all
                no rdr on xl0 proto tcp from any to <vpns> port = ftp
                rdr on xl0 inet proto tcp from any to any port = ftp -> 127.0.0.1 port 8021
                rdr-anchor "imspector" all
                rdr-anchor "miniupnpd" all</vpns>
                
                1 Reply Last reply Reply Quote 0
                • E
                  Eugene
                  last edited by

                  Klikni 'e' chtoby redaktirovat' port-forward, save I apply. Potom esche raz
                  pfctl -sn

                  http://ru.doc.pfsense.org

                  1 Reply Last reply Reply Quote 0
                  • F
                    freak999
                    last edited by

                    @Evgeny:

                    Klikni 'e' chtoby redaktirovat' port-forward, save I apply. Potom esche raz
                    pfctl -sn

                    $ pfctl -sn
                    nat-anchor "pftpx/*" all
                    nat-anchor "natearly/*" all
                    nat-anchor "natrules/*" all
                    nat on xl1 inet from 192.168.9.0/24 port = isakmp to any port = isakmp -> (xl1) port 500 round-robin
                    nat on xl1 inet from 192.168.9.0/24 port = 5060 to any port = 5060 -> (xl1) port 5060 round-robin
                    nat on xl1 inet from 192.168.9.0/24 to any -> (xl1) port 1024:65535 round-robin
                    rdr-anchor "pftpx/*" all
                    rdr-anchor "slb" all
                    no rdr on xl0 proto tcp from any to <vpns> port = ftp
                    rdr on xl0 inet proto tcp from any to any port = ftp -> 127.0.0.1 port 8021
                    rdr on ng0 inet proto tcp from any to 10.100.24.106 port = 8888 -> 192.168.9.9
                    rdr on ng0 inet proto udp from any to 10.100.24.106 port = 8888 -> 192.168.9.9
                    rdr-anchor "imspector" all
                    rdr-anchor "miniupnpd" all</vpns>
                    
                    1 Reply Last reply Reply Quote 0
                    • E
                      Eugene
                      last edited by

                      ну вот, port forward заработал -)))
                      Однако, я был прав - нет у тебя нормального public ip. Не заработает твой торрент -( Меняй провайдера.

                      http://ru.doc.pfsense.org

                      1 Reply Last reply Reply Quote 0
                      • F
                        freak999
                        last edited by

                        @Evgeny:

                        ну вот, port forward заработал -)))
                        Однако, я был прав - нет у тебя нормального public ip. Не заработает твой торрент -( Меняй провайдера.

                        Взял акаунт со статикой. Тоже самое.

                        $ ifconfig
                        xl0: flags=8843 <up,broadcast,running,simplex,multicast>metric 0 mtu 1500
                        	options=9 <rxcsum,vlan_mtu>ether 00:04:75:9e:0d:63
                        	inet 192.168.9.1 netmask 0xffffff00 broadcast 192.168.9.255
                        	inet6 fe80::204:75ff:fe9e:d63%xl0 prefixlen 64 scopeid 0x1 
                        	media: Ethernet autoselect (100baseTX <full-duplex>)
                        	status: active
                        xl1: flags=8843 <up,broadcast,running,simplex,multicast>metric 0 mtu 1500
                        	options=9 <rxcsum,vlan_mtu>ether 00:0e:a6:21:30:d2
                        	inet6 fe80::20e:a6ff:fe21:30d2%xl1 prefixlen 64 scopeid 0x2 
                        	inet 172.17.133.110 netmask 0xfffffc00 broadcast 172.17.135.255
                        	media: Ethernet autoselect (100baseTX <full-duplex>)
                        	status: active
                        lo0: flags=8049 <up,loopback,running,multicast>metric 0 mtu 16384
                        	inet 127.0.0.1 netmask 0xff000000 
                        	inet6 ::1 prefixlen 128 
                        	inet6 fe80::1%lo0 prefixlen 64 scopeid 0x3 
                        enc0: flags=0<> metric 0 mtu 1536
                        pfsync0: flags=41 <up,running>metric 0 mtu 1460
                        	pfsync: syncdev: lo0 syncpeer: 224.0.0.240 maxupd: 128
                        pflog0: flags=100 <promisc>metric 0 mtu 33204
                        ng0: flags=88d1 <up,pointopoint,running,noarp,simplex,multicast>metric 0 mtu 1500
                        	inet 213.110.127.41 --> 172.17.0.1 netmask 0xffffffff 
                        	inet6 fe80::204:75ff:fe9e:d63%ng0 prefixlen 64 scopeid 0x7</up,pointopoint,running,noarp,simplex,multicast></promisc></up,running></up,loopback,running,multicast></full-duplex></rxcsum,vlan_mtu></up,broadcast,running,simplex,multicast></full-duplex></rxcsum,vlan_mtu></up,broadcast,running,simplex,multicast> 
                        
                        $ pfctl -sn
                        nat-anchor "pftpx/*" all
                        nat-anchor "natearly/*" all
                        nat-anchor "natrules/*" all
                        nat on xl1 inet from 192.168.9.0/24 port = isakmp to any port = isakmp -> (xl1) port 500 round-robin
                        nat on xl1 inet from 192.168.9.0/24 port = 5060 to any port = 5060 -> (xl1) port 5060 round-robin
                        nat on xl1 inet from 192.168.9.0/24 to any -> (xl1) port 1024:65535 round-robin
                        rdr-anchor "pftpx/*" all
                        rdr-anchor "slb" all
                        no rdr on xl0 proto tcp from any to <vpns> port = ftp
                        rdr on xl0 inet proto tcp from any to any port = ftp -> 127.0.0.1 port 8021
                        rdr on ng0 inet proto tcp from any to 213.110.127.41 port = 8888 -> 192.168.9.9
                        rdr on ng0 inet proto udp from any to 213.110.127.41 port = 8888 -> 192.168.9.9
                        rdr-anchor "imspector" all
                        rdr-anchor "miniupnpd" all</vpns>
                        
                        1 Reply Last reply Reply Quote 0
                        • E
                          Eugene
                          last edited by

                          Ну tcp на 213.110.127.41 не пускает, уверен, что клиент "слушает"?
                          На машине с клиентом дай```
                          netstat -an

                          http://ru.doc.pfsense.org

                          1 Reply Last reply Reply Quote 0
                          • F
                            freak999
                            last edited by

                            Думаю этого хватит, не все копировал.

                            tcp        0      0 0.0.0.0:80              0.0.0.0:*               LISTEN     
                            tcp        0      0 127.0.0.1:631           0.0.0.0:*               LISTEN     
                            tcp        0      0 0.0.0.0:8888            0.0.0.0:*               LISTEN     
                            tcp        0      0 127.0.0.1:3306          0.0.0.0:*               LISTEN     
                            tcp        0    896 192.168.9.9:56930       192.168.9.1:22          ESTABLISHED
                            tcp        0      0 192.168.9.9:57179       192.168.9.1:22          ESTABLISHED
                            tcp        0      1 192.168.9.9:60939       209.85.149.113:80       SYN_SENT   
                            tcp        0      1 192.168.9.9:35377       213.254.249.122:80      SYN_SENT   
                            tcp        0      0 192.168.9.9:39078       192.168.9.1:8080        TIME_WAIT  
                            tcp        0      1 192.168.9.9:58165       209.85.149.139:80       SYN_SENT   
                            tcp6       0      0 ::1:631                 :::*                    LISTEN     
                            tcp6       0      0 :::8888                 :::*                    LISTEN     
                            tcp6       0      0 :::445                  :::*                    LISTEN     
                            tcp6       0      0 :::6881                 :::*                    LISTEN     
                            tcp6       0      0 :::139                  :::*                    LISTEN     
                            udp        0      0 0.0.0.0:8888            0.0.0.0:*                          
                            udp        0      0 0.0.0.0:5353            0.0.0.0:*                          
                            udp        0      0 0.0.0.0:51005           0.0.0.0:*                          
                            udp        0      0 192.168.9.9:53310       192.168.9.1:5351        ESTABLISHED
                            udp        0      0 0.0.0.0:68              0.0.0.0:*                          
                            udp        0      0 192.168.9.255:137       0.0.0.0:*                          
                            udp        0      0 192.168.9.9:137         0.0.0.0:*                          
                            udp        0      0 172.16.60.255:137       0.0.0.0:*                          
                            udp        0      0 172.16.60.1:137         0.0.0.0:*                          
                            udp        0      0 172.17.135.255:137      0.0.0.0:*                          
                            udp        0      0 192.168.46.255:137      0.0.0.0:*                          
                            udp        0      0 192.168.46.1:137        0.0.0.0:*                          
                            udp        0      0 0.0.0.0:137             0.0.0.0:*                          
                            udp        0      0 192.168.9.255:138       0.0.0.0:*                          
                            udp        0      0 192.168.9.9:138         0.0.0.0:*                          
                            udp        0      0 172.16.60.255:138       0.0.0.0:*                          
                            udp        0      0 172.16.60.1:138         0.0.0.0:*                          
                            udp        0      0 172.17.135.255:138      0.0.0.0:*                          
                            udp        0      0 192.168.46.255:138      0.0.0.0:*                          
                            udp        0      0 192.168.46.1:138        0.0.0.0:*                          
                            udp        0      0 0.0.0.0:138             0.0.0.0:*                          
                            
                            
                            1 Reply Last reply Reply Quote 0
                            • E
                              Eugene
                              last edited by

                              слушает и TCP и UDP.
                              тогда сходи на http://whatismyip.com если кажет 213.110.127.41, то запусти```
                              tcpdump -ni ng0 port 8888

                              http://ru.doc.pfsense.org

                              1 Reply Last reply Reply Quote 0
                              • F
                                freak999
                                last edited by

                                @Evgeny:

                                слушает и TCP и UDP.
                                тогда сходи на http://whatismyip.com если кажет 213.110.127.41, то запусти```
                                tcpdump -ni ng0 port 8888

                                $ tcpdump -ni ng0 port 8888
                                21:11:11.727036 IP 10.100.24.234.4782 > 213.110.127.41.8888: S 1332209210:1332209210(0) win 65340 <mss 1360,nop,wscale="" 0,nop,nop,sackok="">
                                21:11:11.728675 IP 10.100.24.199.55647 > 213.110.127.41.8888: S 3493840736:3493840736(0) win 8192 <mss 1360,nop,nop,sackok="">
                                21:11:12.963594 IP 10.100.26.33.4909 > 213.110.127.41.8888: S 2594580932:2594580932(0) win 64380 <mss 1360,nop,nop,sackok="">
                                21:11:13.724997 IP 10.100.31.162.52760 > 213.110.127.41.8888: S 3828499124:3828499124(0) win 8192 <mss 1360,nop,wscale="" 2,nop,nop,sackok="">
                                21:11:15.876752 IP 192.168.9.9.8888 > 77.49.111.180.50465: UDP, length 67
                                21:11:16.723187 IP 10.100.31.162.52760 > 213.110.127.41.8888: S 3828499124:3828499124(0) win 8192 <mss 1360,nop,wscale="" 2,nop,nop,sackok="">
                                21:11:17.661641 IP 10.100.24.234.4782 > 213.110.127.41.8888: S 1332209210:1332209210(0) win 65340 <mss 1360,nop,wscale="" 0,nop,nop,sackok="">
                                21:11:19.001331 IP 10.100.26.33.4909 > 213.110.127.41.8888: S 2594580932:2594580932(0) win 64380 <mss 1360,nop,nop,sackok="">
                                21:11:19.341039 IP 10.100.36.73.48696 > 213.110.127.41.8888: UDP, length 67
                                21:11:19.366798 IP 10.100.36.73.51565 > 213.110.127.41.8888: S 1971624481:1971624481(0) win 8192 <mss 1360,nop,wscale="" 2,nop,nop,sackok="">
                                21:11:19.366999 IP 10.100.36.73.48696 > 213.110.127.41.8888: UDP, length 30
                                21:11:20.185669 IP 10.100.8.98.61111 > 213.110.127.41.8888: S 1177093799:1177093799(0) win 8192 <mss 1360,nop,wscale="" 2,nop,nop,sackok="">
                                21:11:22.365492 IP 10.100.36.73.51565 > 213.110.127.41.8888: S 1971624481:1971624481(0) win 8192 <mss 1360,nop,wscale="" 2,nop,nop,sackok="">
                                21:11:22.375793 IP 10.100.36.73.48696 > 213.110.127.41.8888: UDP, length 30
                                21:11:22.728968 IP 10.100.31.162.52760 > 213.110.127.41.8888: S 3828499124:3828499124(0) win 8192 <mss 1360,nop,nop,sackok="">
                                21:11:23.192837 IP 10.100.8.98.61111 > 213.110.127.41.8888: S 1177093799:1177093799(0) win 8192 <mss 1360,nop,wscale="" 2,nop,nop,sackok="">
                                21:11:24.106615 IP 213.110.121.188.3364 > 213.110.127.41.8888: S 4073393488:4073393488(0) win 16384 <mss 1360,nop,nop,sackok="">
                                21:11:24.981167 IP 10.100.34.115.61867 > 213.110.127.41.8888: S 1191124813:1191124813(0) win 8192 <mss 1360,nop,wscale="" 2,nop,nop,sackok="">
                                21:11:27.041339 IP 213.110.121.188.3364 > 213.110.127.41.8888: S 4073393488:4073393488(0) win 16384 <mss 1360,nop,nop,sackok="">
                                21:11:27.980420 IP 10.100.34.115.61867 > 213.110.127.41.8888: S 1191124813:1191124813(0) win 8192 <mss 1360,nop,wscale="" 2,nop,nop,sackok="">
                                21:11:28.149212 IP 10.100.11.74.32168 > 213.110.127.41.8888: UDP, length 30
                                21:11:28.149475 IP 10.100.11.74.52674 > 213.110.127.41.8888: S 4086770282:4086770282(0) win 8192 <mss 1360,nop,wscale="" 2,nop,nop,sackok="">
                                21:11:28.366702 IP 10.100.36.73.51565 > 213.110.127.41.8888: S 1971624481:1971624481(0) win 8192 <mss 1360,nop,nop,sackok="">
                                21:11:28.648381 IP 192.168.9.9.8888 > 70.36.8.98.17379: UDP, length 67</mss></mss></mss></mss></mss></mss></mss></mss></mss></mss></mss></mss></mss></mss></mss></mss></mss></mss>
                                
                                1 Reply Last reply Reply Quote 0
                                • E
                                  Eugene
                                  last edited by

                                  Фикня какая-то… А ты outbound nat добавил (моя инструкция, начиная с "Теперь не забываем добавить NAT: ")?

                                  http://ru.doc.pfsense.org

                                  1 Reply Last reply Reply Quote 0
                                  • F
                                    freak999
                                    last edited by

                                    @Evgeny:

                                    Фикня какая-то… А ты outbound nat добавил (моя инструкция, начиная с "Теперь не забываем добавить NAT: ")?

                                    Только я не знаю что писать в outbound(

                                    1 Reply Last reply Reply Quote 0
                                    • E
                                      Eugene
                                      last edited by

                                      @freak999:

                                      @Evgeny:

                                      Фикня какая-то… А ты outbound nat добавил (моя инструкция, начиная с "Теперь не забываем добавить NAT: ")?

                                      Только я не знаю что писать в outbound(

                                      Interface=OPT1
                                      Source=192.168.9.0/24

                                      http://ru.doc.pfsense.org

                                      1 Reply Last reply Reply Quote 0
                                      • F
                                        freak999
                                        last edited by

                                        @Evgeny:

                                        @freak999:

                                        @Evgeny:

                                        Фикня какая-то… А ты outbound nat добавил (моя инструкция, начиная с "Теперь не забываем добавить NAT: ")?

                                        Только я не знаю что писать в outbound(

                                        Interface=OPT1
                                        Source=192.168.9.0/24

                                        1_1.jpg
                                        1_1.jpg_thumb

                                        1 Reply Last reply Reply Quote 0
                                        • E
                                          Eugene
                                          last edited by

                                          ну теперь опять```
                                          tcpdump -ni ng0 port 8888

                                          http://ru.doc.pfsense.org

                                          1 Reply Last reply Reply Quote 0
                                          • F
                                            freak999
                                            last edited by

                                            @Evgeny:

                                            ну теперь опять```
                                            tcpdump -ni ng0 port 8888

                                            Странная ситуация возникла. Раз в год я переключаюсь на винду(это было седна с утра). На винде все заработало, даже без статического айпи.Тоесть торрент и аська работают. А на убунте нехотит. Какие могут быть предположения?

                                            1 Reply Last reply Reply Quote 0
                                            • First post
                                              Last post
                                            Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.