Re: pf + ipv6 + keep state - any known issues?

2006-09-26 Thread Peter Schuller
Are you using antispoofing rules on your external interface? If you've got something like this in your ruleset: antispoof log quick for $ext_if Then it will expand into a series of rules containing the following when you load them: Thank you for responding! No, this is not the issue.

Re: pf + ipv6 + keep state - any known issues?

2006-09-24 Thread Matthew Seaman
Peter Schuller wrote: Hello, I am using pf on a 6.1 machine. I have a tunneling interface (gif0) for my IPv6 feed. The problem I am having is connecting to myself in spite of firewalling. I am allowing traffic on port 22 to my public ipv6 address. I am also allowing all outgoing

pf + ipv6 + keep state - any known issues?

2006-09-23 Thread Peter Schuller
Hello, I am using pf on a 6.1 machine. I have a tunneling interface (gif0) for my IPv6 feed. The problem I am having is connecting to myself in spite of firewalling. I am allowing traffic on port 22 to my public ipv6 address. I am also allowing all outgoing traffic on the tunneling interface,