Problem with PF reply-to

2011-07-13 Thread Mario Lobo
Hi; I have the following scenario. FreeBSD 8.2-STABLE FreeBSD 8.2-STABLE #0: Thu May 19 19:53:59 BRT 2011 i386 I want to be able to connect to any of the 2 external IPs this machine has. ### pf.conf excerpt ext_if1 = sis0 (1M link. default gateway) ext_if2 = rl0 (2M link) aln_if = dc0

Re: Problem with PF reply-to [SOLVED]

2011-07-13 Thread Mario Lobo
On Wednesday 13 July 2011 10:26:59 Mario Lobo wrote: Hi; I have the following scenario. FreeBSD 8.2-STABLE FreeBSD 8.2-STABLE #0: Thu May 19 19:53:59 BRT 2011 i386 I want to be able to connect to any of the 2 external IPs this machine has. ### pf.conf excerpt ext_if1 = sis0 (1M

Re: Problem with pf, which is not doing NAT

2008-07-05 Thread Jason Garrett
On Fri, Jul 4, 2008 at 4:34 AM, assetburned [EMAIL PROTECTED] wrote: Hi On 04.07.2008, at 08:32, Michael Lednev wrote: assetburned пишет: So any ideas? do you have gateway_enable=YES in /etc/rc.conf? Yes I have that line active. I also have natd_enable=NO because I was told I

Re: Problem with pf, which is not doing NAT

2008-07-04 Thread assetburned
Hi On 04.07.2008, at 08:32, Michael Lednev wrote: assetburned пишет: So any ideas? do you have gateway_enable=YES in /etc/rc.conf? Yes I have that line active. I also have natd_enable=NO because I was told I don't need it anymore for pf (I'm a switcher from IPFW). cu assetburned

Re: Problem with pf, which is not doing NAT (Solved)

2008-07-04 Thread assetburned
On 03.07.2008, at 19:34, xSAPPYx wrote: A couple of pass rules should help pass in on $IntIF pass out on $ExtIF Hi, that's it! thanks! cu assetburned ___ freebsd-questions@freebsd.org mailing list

Re: Problem with pf, which is not doing NAT

2008-07-04 Thread Michael Lednev
assetburned пишет: Hi, I try to use a FreeBSD machine as a gateway with 2 LAN, one WAN connection and a local Squid. All I want to do for the beginning is do NAT the whole traffic to the Internet. The whole traffic should be go directly to the WAN interface If one of the users want to,

Problem with pf, which is not doing NAT

2008-07-03 Thread assetburned
Hi, I try to use a FreeBSD machine as a gateway with 2 LAN, one WAN connection and a local Squid. All I want to do for the beginning is do NAT the whole traffic to the Internet. The whole traffic should be go directly to the WAN interface If one of the users want to, than he should be

Re: Problem with pf, which is not doing NAT

2008-07-03 Thread Sean Cavanaugh
-- From: assetburned [EMAIL PROTECTED] Sent: Thursday, July 03, 2008 12:37 PM To: freebsd-questions@freebsd.org Subject: Problem with pf, which is not doing NAT Hi, I try to use a FreeBSD machine as a gateway with 2 LAN, one WAN connection

Re: problem on pf @ freebsd 7.0

2008-05-14 Thread CyberSans AirBort
forgot to cc'ed to freebsd-questions@freebsd.org On Wed, May 14, 2008 at 4:40 PM, CyberSans AirBort [EMAIL PROTECTED] wrote: kldstat only shows: Id Refs AddressSize Name 17 0xc040 910b90 kernel 21 0xc0d11000 6a32cacpi.ko 31 0xc6c4f000 22000linux.ko

Re: problem on pf @ freebsd 7.0

2008-05-14 Thread CyberSans AirBort
oh yes. i did type exactly like that. and still pf didn't load on startup even though it has /etc/rc.d/pf and like i said before, i have to re-load the pf by using /etc/rc.d/pf restart btw, what kind of freebsd's distro that you used without having problem on this pf? 7.0? On Wed, May 14, 2008

Re: problem on pf @ freebsd 7.0

2008-05-14 Thread RW
On Wed, 14 May 2008 09:24:52 +0800 CyberSans AirBort [EMAIL PROTECTED] wrote: and guess what? pf is not loading when startup. i have to manually restarted the pf using /etc/rc.d/pf restart What exactly do you mean by not loading? Do you mean not working? Are there any pf related error

Re: problem on pf @ freebsd 7.0

2008-05-14 Thread xSAPPYx
Take a look in /etc/defaults/rc.conf The bits for PF are already there. All you should need is to set pf_enable=YES A quick guess would be that that /etc/defaults/rc.conf is loaded after /etc/rc.conf, and pf_enable is reset to NO, but that is just a guess. Here is my pf section from

Re: problem on pf @ freebsd 7.0

2008-05-14 Thread RW
On Wed, 14 May 2008 11:07:03 -0700 xSAPPYx [EMAIL PROTECTED] wrote: Take a look in /etc/defaults/rc.conf The bits for PF are already there. All you should need is to set pf_enable=YES A quick guess would be that that /etc/defaults/rc.conf is loaded after /etc/rc.conf, and pf_enable is

Re: problem on pf @ freebsd 7.0

2008-05-14 Thread CyberSans AirBort
] wrote: oh yes. i did type exactly like that. and still pf didn't load on startup even though it has /etc/rc.d/pf and like i said before, i have to re-load the pf by using /etc/rc.d/pf restart btw, what kind of freebsd's distro that you used without having problem on this pf? 7.0? On Wed

problem on pf @ freebsd 7.0

2008-05-13 Thread CyberSans AirBort
hello there. sorry if this similar question been asked before in this forum. my problem is, i install freebsd 7.0 and after that compile the kernel to enable pf (using the same method like freebsd's handbook said): device pf device pflog device pfsync options ALTQ options ALTQ_CBQ options

Problem with pf - bug?

2006-10-02 Thread Matthias Fechner
Hi, I added the following rules to my config for pf: table bruteforce persist file /usr/local/firewall/bruteforce block in log quick inet from bruteforce to any label RULE 1 \ -- DROP pass in log quick inet proto tcp from any to any port 22 flags \ S/AS modulate state ( max-src-conn

Re: Problem with PF

2005-04-01 Thread Pat Maddox
I found it out, just didn't have pf.ko loaded up. On Mar 31, 2005 11:50 PM, Peter N. M. Hansteen [EMAIL PROTECTED] wrote: Pat Maddox [EMAIL PROTECTED] writes: FreeBSD 5.3-RELEASE-p5. I'm not sure how to check the pf version. One possible source of trouble is running pf from ports on

Re: Problem with PF

2005-03-31 Thread Peter N. M. Hansteen
Pat Maddox [EMAIL PROTECTED] writes: I'm trying to set up PF on a server, and when I run pfctl -nf /etc/pf.conf, I get the following error: pfctl: ifa_load: pfi_get_ifaces: Bad file descriptor More info is required. Which FreeBSD and PF versions (not all permutations of pf and FreeBSD will

Re: Problem with PF

2005-03-31 Thread Pat Maddox
FreeBSD 5.3-RELEASE-p5. I'm not sure how to check the pf version. I just started getting this error a couple days ago, and I've got absolutely no clue why. I don't recall making any significant changes to the box. Anyway, here's pf.conf: # --- pf.conf skeleton for server # #

Re: Problem with PF

2005-03-31 Thread Pat Maddox
Sorry, I grabbed pf.conf from the wrong machine. I basically just copied the previous one, made the couple changes I needed. The real difference is that there's no UDP in, and not as many TCP ins are allowed: # --- pf.conf skeleton for server # # --- MACRO Section

Re: Problem with PF

2005-03-31 Thread Peter N. M. Hansteen
Pat Maddox [EMAIL PROTECTED] writes: FreeBSD 5.3-RELEASE-p5. I'm not sure how to check the pf version. One possible source of trouble is running pf from ports on 5.3-release or newer. That could happen if you were running, say, 5.2.something with the port, upgraded your system to 5.3 but left

Problem with PF

2005-03-30 Thread Pat Maddox
I'm trying to set up PF on a server, and when I run pfctl -nf /etc/pf.conf, I get the following error: pfctl: ifa_load: pfi_get_ifaces: Bad file descriptor Google doesn't come up with anything, I've got no clue what that is. Any help? ___