Re: pf filtering on bridge totally blown my mind

2020-11-27 Thread kasak
27.11.2020 13:04, kasak пишет: 27.11.2020 12:58, Zé Loff пишет: On Fri, Nov 27, 2020 at 12:05:49PM +0300, kasak wrote: Mine configuration requires to use a brigde: I have files: cat /etc/hostname.bridge0 add vether0 add em1 add tap1 up files hostname.em1 and tap1 just contain "up" and

Re: pf filtering on bridge totally blown my mind

2020-11-27 Thread Janne Johansson
Den fre 27 nov. 2020 kl 10:08 skrev kasak : > Mine configuration requires to use a brigde: > I have files: > > gater:~$ doas pfctl -sr > block return all > pass all flags S/SA > block drop in on em0 all > pass out on em0 inet from 172.16.0.0/12 to any flags S/SA nat-to > 212.233.112.10 > pass

Re: pf filtering on bridge totally blown my mind

2020-11-27 Thread kasak
27.11.2020 12:58, Zé Loff пишет: On Fri, Nov 27, 2020 at 12:05:49PM +0300, kasak wrote: Mine configuration requires to use a brigde: I have files: cat /etc/hostname.bridge0 add vether0 add em1 add tap1 up files hostname.em1 and tap1 just contain "up" and file hostname.vether0 contain:

Re: pf filtering on bridge totally blown my mind

2020-11-27 Thread Zé Loff
On Fri, Nov 27, 2020 at 12:05:49PM +0300, kasak wrote: > Mine configuration requires to use a brigde: > > I have files: > > cat /etc/hostname.bridge0 > add vether0 > add em1 > add tap1 > up > > files hostname.em1 and tap1 just contain "up" > > and file hostname.vether0 contain: > > inet