Re: ipfw layer2+3 firewalling question

2025-03-25 Thread void
Hi Ronald, thank you for your reply. On Sun, Mar 23, 2025 at 08:21:21PM +0100, Ronald Klop wrote: I assume that in your setup igb0 is the host interface as well as bridge member. That's correct. That makes the setup a bit hard to reason about. IMHO you now have a virtual setup which you wo

Re: ipfw layer2+3 firewalling question

2025-03-23 Thread Ronald Klop
Op 23-03-2025 om 15:07 schreef void: Hi, (originally posted on the forums) My objective is to protect services on a bhyve host, while allowing traffic to the bhyve guests to pass to and from them unprocessed, as these each have pf and their own firewall policies. The host running recent -curr

ipfw layer2+3 firewalling question

2025-03-23 Thread void
Hi, (originally posted on the forums) My objective is to protect services on a bhyve host, while allowing traffic to the bhyve guests to pass to and from them unprocessed, as these each have pf and their own firewall policies. The host running recent -current. I know ipfw can process both la