Re: Unexpected pf behavior for DHCP traffic?

2021-08-19 Thread Étienne
On 19/08/2021 19:01, Stefan Sperling wrote: Any idea? I suspect the packets towards vether0 are being dropped by pf. What does your pf.conf look like? I have been looking in that direction, and reduced my pf.conf to this: default_tcp_ports="{ 22 }" set block-policy return set skip

Re: Unexpected pf behavior for DHCP traffic?

2021-08-19 Thread Stefan Sperling
On Thu, Aug 19, 2021 at 06:42:25PM +0100, Étienne wrote: > On 31/07/2021 19:27, Stefan Sperling wrote: > > On Sat, Jul 31, 2021 at 07:02:35PM +0100, Étienne wrote: > > > On 30/07/2021 04:37, Theo de Raadt wrote: > > > > dhcpleased (and a few other daemons) use bpf, thus see raw packets > > > >

Re: Unexpected pf behavior for DHCP traffic?

2021-08-19 Thread Étienne
On 31/07/2021 19:27, Stefan Sperling wrote: On Sat, Jul 31, 2021 at 07:02:35PM +0100, Étienne wrote: On 30/07/2021 04:37, Theo de Raadt wrote: dhcpleased (and a few other daemons) use bpf, thus see raw packets from the wire before pf can block them. Most daemons of this type also use bpf to