Flow of broadcast/multicast packets in pf when a bridge is present

2019-12-23 Thread Andreas Longwitz
On a server with a bridge running FreeBSD 12.1-STABLE r354175 I try to understand the flow of broadcast/multicast packets in pf. The bridge interface is defined with ifconfig_bridge0="inet 192.168.0.125/24 addm em0 addm em1 up, further I use net.link.bridge.inherit_mac=1, the other net.link.br

PF frag entries limit reached on a server with hw.ncpu: 24

2019-12-23 Thread Andreas Longwitz
On one of my servers a saw some messages dssinet kernel: [zone: pf frag entries] PF frag entries limit reached The output of the command vmstat -z | grep "pf frag entries" was pf frag entries:40, 5000,0, 5000, 18760, 0, 0 So there are 5000 free items, none is in use a