Re: npf syntax: port ranges, negation of a condition, and map rules (Rocky Hotas) writes:

>In particular, for example,

>map $myif dynamic proto tcp $myhost port 33434-33435 <- $myif port 55000-55001

>doesn't work:

># npfctl reload
>/etc/npf.conf:41:92: port range is not valid near '55001'

The "port forwarding case" only handles single ports. You need
separate map commands for each port.

                                Michael van Elst
                                "A potential Snark may lurk in every tree."

