Re: pf and bridging

From: Andre Oppermann (andre_at_freebsd.org)
Date: 12/04/04

  • Next message: Gleb Smirnoff: "Re: kern/73129: [patch] IPFW misbehaviour in RELENG_5"
    Date: Sat, 04 Dec 2004 22:59:46 +0100
    To: Max Laier <max@love2party.net>
    
    

    Max Laier wrote:
    >
    > On Thursday 02 December 2004 19:45, Petr Holub wrote:
    > > Hi all,
    > >
    > > I wonder if it is possible to use the new pf firewall together with
    > > bridging as it is possible to use it with ipf and ipfw.
    >
    > Unfortunately the PFIL_HOOKS in bridge.c don't work too well for pf (or ipf
    > for the same reason) thus you cannot use stateful filtering. There is an
    > ongoing discussion on freebsd-pf@ that talks about the details:
    > http://lists.freebsd.org/pipermail/freebsd-pf/2004-December/000621.html
    > http://lists.freebsd.org/pipermail/freebsd-pf/2004-December/000625.html
    > http://lists.freebsd.org/pipermail/freebsd-pf/2004-December/000631.html

    I'll do the Layer 2 ipfw pfil_hook conversion next when I've finished
    the rewrite of TCP reassembly in a few days.

    -- 
    Andre
    _______________________________________________
    freebsd-net@freebsd.org mailing list
    http://lists.freebsd.org/mailman/listinfo/freebsd-net
    To unsubscribe, send any mail to "freebsd-net-unsubscribe@freebsd.org"
    

  • Next message: Gleb Smirnoff: "Re: kern/73129: [patch] IPFW misbehaviour in RELENG_5"

    Relevant Pages

    • RE: FreeBSD - Secure by DEFAULT ?? [hosts.allow]
      ... But why IPFW? ... IPF is *BSD native wall. ... > hosts.allow file on a FreeBSD Production Server? ... but with no Firewall yet. ...
      (FreeBSD-Security)
    • Re: ipfw,ipf
      ... but what is the difference between ipfw and ipf ... > Seting up your firewall is easy to do... ... You can protect just one host, or an entire network. ...
      (comp.unix.bsd.freebsd.misc)
    • Re: My first install - good performance, firewall questions
      ... There are two firewall, ipf and ipfw, embedded in the FreeBSD. ...
      (comp.unix.bsd.freebsd.misc)
    • Re: freebsd firewallS
      ... i'd like build a rules firewall 4 my machine on the internet and my lan. ... I see: IPFW, PF, IPF. ... I have a main server on the internet and several clients. ... If you expect a simple rule set, then ipf may be the easy solution. ...
      (freebsd-questions)
    • RE: ipf not working correctly???
      ... Your first problem is you have ipfw and ipf both turned on in kernel ... You can only have one firewall on at a time. ...
      (freebsd-questions)