RE: Very Annoying problem... blocks everything...

2002-12-16 Thread shawnm
Only on the dc0 interface. the 192.168.3.0/24 block is on the dc1 interface. The dc0 interface goes to the internet... I don't want/need to send anything from 192.168/16 to the internet since their 1918 addys... -Shawn > > > > >> Do you have all routing set up correctly? Is the network that >

Re: Very Annoying problem... blocks everything...

2002-12-16 Thread shawnm
Routing isn't an issue. if I turn off packet filtering (pfctl -d) everything works perfect. I turn it on... and I can get onto the firewall from my "full access" workstations outside of the network. I can't hit anything else in any networks while it's turnned on, unless I comment out the "blo

Re: Very Annoying problem... blocks everything...

2002-12-16 Thread shawnm
Yeah, I'll post them up on a webpage real quick. and to answer someone's question earler, yes, I'm using "quick" rules. I'm wanting to try and keep the latency down as low as I can. And I figured that would be the best way to keep it down. > Shawn, > > Multi-interface packet filtering can be

Very Annoying problem... blocks everything...

2002-12-16 Thread shawnm
Ok, I'm new to OpenBSD and pf, but I'm quickly getting the hang of it. Here's my setup: AMD 2300 w/ 512mb DDR ram 512mb flash drive 5 10/100 network cards I have 4 networks right now, one of them is the internet. So let's call them, Inet, A, B,and C. Network C is the network with all mail/web