Thats pretty promising.   Sounds like we have a prospect for 1.1!

Scott


On 10/25/05, Thomas <[EMAIL PROTECTED]> wrote:
> Just to let you know, I'm still working on this but am findinc precious
> little time to do so. Your update for today is:
> Succeeded in cloning the interfaces on my WRAP box and was able to obtain
> different IP addresses through dhclient (all this with pf disabled, but so
> far so good!
>
> Thomas
>
> -----
>
> Depending on what interface names the eiface interfaces come up as try
> adding:
> pass on $eiface any
>
> somewhere above the fallthru deny in /tmp/rules.debug and then do a pfctl -f
> /tmp/rules.debug to reload it.
>
> Alternately if you don't mind losing filtering for the purpose of testing to
> make sure it's not pf (and just not getting logged) try:
> pfctl -d
> which will disable filtering
> pfctl -e
> will re-enable when done.
>
> The fact that this does work in FreeSBIE makes me suspect pfctl.
> Also, ohhhh...thought just came to mind, the traffic might be getting NAT'd
> to the physical IPs address - all the more reason to disable PF for the test
> :)
>
> --Bill
>
> ---------------------------------------------------------------------
> To unsubscribe, e-mail: [EMAIL PROTECTED] For additional
> commands, e-mail: [EMAIL PROTECTED]
>
>
>
> ---------------------------------------------------------------------
> To unsubscribe, e-mail: [EMAIL PROTECTED]
> For additional commands, e-mail: [EMAIL PROTECTED]
>
>

---------------------------------------------------------------------
To unsubscribe, e-mail: [EMAIL PROTECTED]
For additional commands, e-mail: [EMAIL PROTECTED]

Reply via email to