I have a small problem. I don’t know how (if possible at all) to lock down the firewall with my current setup.
This is how I have it set up right now (Freebsd 8.1 system).
I’m running rtorrent in a jail.
PF is pointing the jail ip to a VPN tunnel that’s created with mpd5 (in the base system).
The port_range in the .rtorrent.rc file is set but the packages received/transmitted on the VPN iface is all over the place. I can’t create any firewall rules for them…
Would it be possible to only direct the VPN traffic to the jail? Could this be done with the route?
In the ideal setup the VPN tunnel would have been created from within the jail but that’s apparently impossible as far as I can tell.
My current setup is like locking the front door when leaving but leaving the backdoor open. Well, that’s not really a correct analogy now is it… It’s more like locking the front door on a house with no walls….
This is how I have it set up right now (Freebsd 8.1 system).
I’m running rtorrent in a jail.
PF is pointing the jail ip to a VPN tunnel that’s created with mpd5 (in the base system).
The port_range in the .rtorrent.rc file is set but the packages received/transmitted on the VPN iface is all over the place. I can’t create any firewall rules for them…
Would it be possible to only direct the VPN traffic to the jail? Could this be done with the route?
In the ideal setup the VPN tunnel would have been created from within the jail but that’s apparently impossible as far as I can tell.
My current setup is like locking the front door when leaving but leaving the backdoor open. Well, that’s not really a correct analogy now is it… It’s more like locking the front door on a house with no walls….