packet filter

  1. FzZzT

    pr and bridges and squids, oh my!

    Hello, I've read a number of other threads and resources (here and elsewhere) but I can't seem to get the correct combination of things to make my scenario work. Some info seems to be outdated or I'm not sure how to fit it in. Maybe it just isn't possible. Hopefully this isn't completely...
  2. L

    PF PF outbound rule on a bridge member interface did not stop packets

    Dear Exports, I have a puzzle on my hand. I have a network isolated from the Internet. The freeBSD computer has 4 Ethernet ports, but only 3 are involved in this puzzle while the 4th is only used to access the freeBSD. My basic goal is to send some of the multicast from the up stream...
  3. PaulWebster

    NAT+pf+multi gateway issue

    Good day all, I have a working home network that has the following layout: [Clients (172.31.33.2-172.31.33.200] | [Switch||Wireless AP] | [Gateway (172.31.33.1,PUBLIC_IP)] | {internet} miniupnpd is enabled as well as a few other bits of tinsel, but all in all works perfectly.. Now the issue...
  4. D

    Generic NAT firewall pf config / template

    People seem to run into issues from time to time so I figured that I'd provide a sample config that pretty much mimics your generic SOHO router/gateway. ################################# #### Packet Firewall Ruleset #### ################################# ################### #### Variables...
  5. IPTRACE

    10.3->11.0 (something blocks connections for openvpn)

    After upgrade to 11.0-RELEASE something blocks connections between openvpn-client and openvpn-server etc. I mean traffic after openvpn connection is established, so user can connect but has no traffic. Only one connected user is forwarded/routed to destinations/other hosts etc. When the second...
  6. IPTRACE

    10.3->11.0 (pf added existed routes at boot)

    Hello! I've encountered the problem after upgrade to 11.0-RELEASE. I suppose pf adding two routes which exist. Starting Network: lo0 vtnet0. lo0: flags=8049<UP,LOOPBACK,RUNNING,MULTICAST> metric 0 mtu 16384 options=600003<RXCSUM,TXCSUM,RXCSUM_IPV6,TXCSUM_IPV6> inet6 ::1...
  7. G

    Solved PF Fails to Load Ruleset with Jails (lo1 interface)

    This post is for anyone who may be using a jail, and after you set the jail to run at startup, PF rules are not loading (on the host machine). The odd thing that made me scratch my head is that you can manually start it and everything works; something is uniquely happening at startup that is...
  8. quamenzullo

    Networking and jails

    Hello, I still have some questions about networking and jails. I could not find the answers in the documentation or forums. I hope my questions are not too dumb. 1. The networking inside jails seems to partly rely on the networking of the host. To get "more" networking features, it is...
Back
Top