Hi;
I have the following scenario.
FreeBSD 8.2-STABLE FreeBSD 8.2-STABLE #0: Thu May 19 19:53:59 BRT 2011
i386
I want to be able to connect to any of the 2 external IPs this machine has.
### pf.conf excerpt
ext_if1 = sis0 (1M link. default gateway)
ext_if2 = rl0 (2M link)
aln_if = dc0
On Wednesday 13 July 2011 10:26:59 Mario Lobo wrote:
Hi;
I have the following scenario.
FreeBSD 8.2-STABLE FreeBSD 8.2-STABLE #0: Thu May 19 19:53:59 BRT 2011
i386
I want to be able to connect to any of the 2 external IPs this machine has.
### pf.conf excerpt
ext_if1 = sis0 (1M
On Fri, Jul 4, 2008 at 4:34 AM, assetburned [EMAIL PROTECTED] wrote:
Hi
On 04.07.2008, at 08:32, Michael Lednev wrote:
assetburned пишет:
So any ideas?
do you have gateway_enable=YES in /etc/rc.conf?
Yes I have that line active.
I also have natd_enable=NO because I was told I
Hi
On 04.07.2008, at 08:32, Michael Lednev wrote:
assetburned пишет:
So any ideas?
do you have gateway_enable=YES in /etc/rc.conf?
Yes I have that line active.
I also have natd_enable=NO because I was told I don't need it
anymore for pf (I'm a switcher from IPFW).
cu assetburned
On 03.07.2008, at 19:34, xSAPPYx wrote:
A couple of pass rules should help
pass in on $IntIF
pass out on $ExtIF
Hi,
that's it! thanks!
cu assetburned
___
freebsd-questions@freebsd.org mailing list
assetburned пишет:
Hi,
I try to use a FreeBSD machine as a gateway with 2 LAN, one WAN
connection and a local Squid.
All I want to do for the beginning is do NAT the whole traffic to the
Internet. The whole traffic should be go directly to the WAN interface
If one of the users want to,
Hi,
I try to use a FreeBSD machine as a gateway with 2 LAN, one WAN
connection and a local Squid.
All I want to do for the beginning is do NAT the whole traffic to the
Internet. The whole traffic should be go directly to the WAN interface
If one of the users want to, than he should be
--
From: assetburned [EMAIL PROTECTED]
Sent: Thursday, July 03, 2008 12:37 PM
To: freebsd-questions@freebsd.org
Subject: Problem with pf, which is not doing NAT
Hi,
I try to use a FreeBSD machine as a gateway with 2 LAN, one WAN
connection
forgot to cc'ed to freebsd-questions@freebsd.org
On Wed, May 14, 2008 at 4:40 PM, CyberSans AirBort [EMAIL PROTECTED]
wrote:
kldstat only shows:
Id Refs AddressSize Name
17 0xc040 910b90 kernel
21 0xc0d11000 6a32cacpi.ko
31 0xc6c4f000 22000linux.ko
oh yes. i did type exactly like that. and still pf didn't load on startup
even though it has /etc/rc.d/pf and like i said before, i have to re-load
the pf by using /etc/rc.d/pf restart
btw, what kind of freebsd's distro that you used without having problem on
this pf? 7.0?
On Wed, May 14, 2008
On Wed, 14 May 2008 09:24:52 +0800
CyberSans AirBort [EMAIL PROTECTED] wrote:
and guess what? pf is not loading when startup. i have to manually
restarted the pf using /etc/rc.d/pf restart
What exactly do you mean by not loading? Do you mean not working?
Are there any pf related error
Take a look in /etc/defaults/rc.conf The bits for PF are already
there. All you should need is to set pf_enable=YES
A quick guess would be that that /etc/defaults/rc.conf is loaded after
/etc/rc.conf, and pf_enable is reset to NO, but that is just a guess.
Here is my pf section from
On Wed, 14 May 2008 11:07:03 -0700
xSAPPYx [EMAIL PROTECTED] wrote:
Take a look in /etc/defaults/rc.conf The bits for PF are already
there. All you should need is to set pf_enable=YES
A quick guess would be that that /etc/defaults/rc.conf is loaded after
/etc/rc.conf, and pf_enable is
]
wrote:
oh yes. i did type exactly like that. and still pf didn't load on startup
even though it has /etc/rc.d/pf and like i said before, i have to re-load
the pf by using /etc/rc.d/pf restart
btw, what kind of freebsd's distro that you used without having problem on
this pf? 7.0?
On Wed
hello there. sorry if this similar question been asked before in this forum.
my problem is, i install freebsd 7.0 and after that compile the kernel to
enable pf (using the same method like freebsd's handbook said):
device pf
device pflog
device pfsync
options ALTQ
options ALTQ_CBQ
options
Hi,
I added the following rules to my config for pf:
table bruteforce persist file /usr/local/firewall/bruteforce
block in log quick inet from bruteforce to any label RULE 1 \
-- DROP
pass in log quick inet proto tcp from any to any port 22 flags \
S/AS modulate state ( max-src-conn
I found it out, just didn't have pf.ko loaded up.
On Mar 31, 2005 11:50 PM, Peter N. M. Hansteen [EMAIL PROTECTED] wrote:
Pat Maddox [EMAIL PROTECTED] writes:
FreeBSD 5.3-RELEASE-p5. I'm not sure how to check the pf version.
One possible source of trouble is running pf from ports on
Pat Maddox [EMAIL PROTECTED] writes:
I'm trying to set up PF on a server, and when I run pfctl -nf
/etc/pf.conf, I get the following error:
pfctl: ifa_load: pfi_get_ifaces: Bad file descriptor
More info is required.
Which FreeBSD and PF versions (not all permutations of pf and FreeBSD
will
FreeBSD 5.3-RELEASE-p5. I'm not sure how to check the pf version.
I just started getting this error a couple days ago, and I've got
absolutely no clue why. I don't recall making any significant changes
to the box. Anyway, here's pf.conf:
# --- pf.conf skeleton for server
#
#
Sorry, I grabbed pf.conf from the wrong machine. I basically just
copied the previous one, made the couple changes I needed. The real
difference is that there's no UDP in, and not as many TCP ins are
allowed:
# --- pf.conf skeleton for server
#
# --- MACRO Section
Pat Maddox [EMAIL PROTECTED] writes:
FreeBSD 5.3-RELEASE-p5. I'm not sure how to check the pf version.
One possible source of trouble is running pf from ports on 5.3-release
or newer. That could happen if you were running, say, 5.2.something with
the port, upgraded your system to 5.3 but left
I'm trying to set up PF on a server, and when I run pfctl -nf
/etc/pf.conf, I get the following error:
pfctl: ifa_load: pfi_get_ifaces: Bad file descriptor
Google doesn't come up with anything, I've got no clue what that is. Any help?
___
22 matches
Mail list logo