summaryrefslogtreecommitdiffstats
path: root/etc/inc/filter.inc
diff options
context:
space:
mode:
authorErik Fonnesbeck <efonnes@gmail.com>2010-05-04 20:38:59 -0600
committerErik Fonnesbeck <efonnes@gmail.com>2010-05-04 21:11:25 -0600
commitb06be62974ede02b33fbcfbb7d58f726bf9fe090 (patch)
treef2fc19190180de4926253e87f80b915a4cdb8d28 /etc/inc/filter.inc
parente9d8ecf21cc0f99136c320012072d27bffdb17c4 (diff)
downloadpfsense-b06be62974ede02b33fbcfbb7d58f726bf9fe090.zip
pfsense-b06be62974ede02b33fbcfbb7d58f726bf9fe090.tar.gz
Removed some redundant/obsolete code that is superceded by the new NAT reflection code.
Diffstat (limited to 'etc/inc/filter.inc')
-rw-r--r--etc/inc/filter.inc8
1 files changed, 0 insertions, 8 deletions
diff --git a/etc/inc/filter.inc b/etc/inc/filter.inc
index 83b4c81..669c0b8 100644
--- a/etc/inc/filter.inc
+++ b/etc/inc/filter.inc
@@ -1220,14 +1220,6 @@ function filter_nat_rules_generate() {
$natrules .= "{$nordr}rdr on {$rdr_if_list} proto {$protocol} from {$srcaddr} to {$dstaddr_reflect}" . ($nordr == "" ? " -> {$target}{$localport}\n" : "\n");
}
- /* Does this rule redirect back to a internal host? */
- if(isset($rule['destination']['any']) && !interface_has_gateway($rule['interface']) && !isset($rule['nordr'])) {
- $rule_interface_ip = find_interface_ip($natif);
- $rule_interface_subnet = find_interface_subnet($natif);
- $rule_subnet = gen_subnet($rule_interface_ip, $rule_interface_subnet);
- $natrules .= "no nat on {$natif} proto tcp from ({$natif}) to {$rule_subnet}/{$rule_interface_subnet}\n";
- $natrules .= "nat on {$natif} proto tcp from {$rule_subnet}/{$rule_interface_subnet} to {$target} port {$dstport[0]} -> ({$natif})\n";
- }
$nat_if_list[] = $natif;
if(!isset($rule['nordr']))
$natrules .= filter_generate_reflection_nat($rule, $nat_if_list, $protocol, "{$target}{$localport_nat}", $target_ip);
OpenPOWER on IntegriCloud