Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Add interface to Diagnostics: Show States

    2.1 Snapshot Feedback and Problems - RETIRED
    2
    3
    1.1k
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • G
      ggzengel
      last edited by

      Please add the interface (from pfctl -s state) to this list.
      With this info you can imagine which nat rule really matches.

      1 Reply Last reply Reply Quote 0
      • G
        gerdesj
        last edited by

        @ggzengel:

        Please add the interface (from pfctl -s state) to this list.
        With this info you can imagine which nat rule really matches.

        I am struggling to see the extra utility but I haven't thought about it much.

        A NAT related state already shows the three addresses in use which is very useful. I think adding the interface would probably only be a convenience but not actually add much information.  There is not much room horizontally in the displays and another field would make it worse.  The IPv6 states are already a bit of a mess an I shudder to think what an IPv6 NAT state would look like.

        Cheers
        Jon

        1 Reply Last reply Reply Quote 0
        • G
          ggzengel
          last edited by

          But you didn't know which NAT rule was used for this state.

          If your openvpn client use WAN1 and your default route is WAN2 than your openvpn client will use NAT rule for WAN2:

          pfctl -s state:
          WAN2 WAN1:1234>dest:1194

          If you make a NAT rule for WAN2 (remember openvpn use WAN1) with src=any you will get:
          WAN2 WAN1:1234>WAN2:2345>dest:1194

          If you see this, than you know why your openvpn always goes thru WAN2.

          1 Reply Last reply Reply Quote 0
          • First post
            Last post
          Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.