Re: Filtering jail IP traffic

From: Attila Nagy (bra_at_fsn.hu)
Date: 08/26/05

  • Next message: Paul Khavkine: "Re: Aggregate network interfaces"
    Date: Fri, 26 Aug 2005 16:41:13 +0200
    To: Anders Nordby <anders@fupp.net>
    
    

    Anders Nordby wrote:
    > IP traffic from one jail to another jail, arrives on destination jail on
    > lo0 having the destination jails IP as source IP. Why not the source
    > jail's IP address?
    > How can I filter traffic from one jail to another, using ipfw of ipf?
    AFAIK (at least with pf), you can't really filter on loopback
    interfaces. Last time I tried, I could not filter on TCP or UDP ports,
    filtering from and to IP and protocol worked.

    -- 
    Attila Nagy                                   e-mail: Attila.Nagy@fsn.hu
    Adopt a directory on our free software   phone @work: +361 371 3536
    server! http://www.fsn.hu/?f=brick             cell.: +3630 306 6758
    _______________________________________________
    freebsd-net@freebsd.org mailing list
    http://lists.freebsd.org/mailman/listinfo/freebsd-net
    To unsubscribe, send any mail to "freebsd-net-unsubscribe@freebsd.org"
    

  • Next message: Paul Khavkine: "Re: Aggregate network interfaces"

    Relevant Pages

    • filtering aliasIP from the primaryIP with IPF
      ... my freebsd machine is 192.168.1.34 with one jail running on ... 192.168.1.33, i want to filter that jail with ipf, so that it cannot ... access anything running on that win2k machine and anything bind to the ...
      (freebsd-questions)
    • Re: Is this a Lyme Disease Board or What?
      ... > Kathleen does try and control this group (when she is not in jail or in ... > the psych ward) ... ... filter or ignore her. ... Chucky, ...
      (sci.med.diseases.lyme)
    • Re: Filtering jail IP traffic
      ... > IP traffic from one jail to another jail, arrives on destination jail on ... > lo0 having the destination jails IP as source IP. ... > How can I filter traffic from one jail to another, ...
      (FreeBSD-Security)
    • Re: Is this a Lyme Disease Board or What?
      ... Kathleen does try and control this group (when she is not in jail or in ... the psych ward) ... ... filter or ignore her. ... Prev by Date: ...
      (sci.med.diseases.lyme)
    • Filtering jail IP traffic
      ... IP traffic from one jail to another jail, arrives on destination jail on ... lo0 having the destination jails IP as source IP. ...
      (FreeBSD-Security)