Re: Using pf and Tor DNS port

2013-03-04 Thread Fabian Keil
Robert Simmons wrote: > I am having problems setting up Tor's DNSPort using pf. In FreeBSD > 8.x I was able to just run Tor with the "DNSPort 53" config file > option with no problems. Now, with 9.1, when I run it with that > option, I get a permission denied error when trying to bind port 53 o

Re: kern/163208: [pf] PF state key linking mismatch

2012-01-21 Thread Fabian Keil
The following reply was made to PR kern/163208; it has been noted by GNATS. From: Fabian Keil To: Tilman =?ISO-8859-1?Q?Keskin=F6z?= Cc: bug-follo...@freebsd.org, freebsd-pf@FreeBSD.org Subject: Re: kern/163208: [pf] PF state key linking mismatch Date: Sat, 21 Jan 2012 21:01:18 +0100 --Sig_

Re: kern/163208: [pf] PF state key linking mismatch

2012-01-21 Thread Fabian Keil
Tilman Keskinöz wrote: > Same here. > > Also Fabian Keil reported this in > http://lists.freebsd.org/pipermail/freebsd-current/2011-July/025696.html This has been fixed in CURRENT shortly thereafter: http://lists.freebsd.org/pipermail/freebsd-pf/2011-July/006199.html Maybe the fix

Re: svn commit: r223637 - in head: . contrib/pf/authpf contrib/pf/ftp-proxy contrib/pf/man contrib/pf/pfctl contrib/pf/pflogd sbin/pflogd sys/conf sys/contrib/altq/altq sys/contrib/pf/net sys/modules

2011-07-05 Thread Fabian Keil
Ermal Luçi wrote: > On Tue, Jul 5, 2011 at 3:47 PM, Fabian Keil > wrote: > > Ermal Luçi wrote: > >> I just committed a fix for the state key linking mismatch issue. > >> Can you test with the latest HEAD sources? > > > > Works for me, at least

Re: svn commit: r223637 - in head: . contrib/pf/authpf contrib/pf/ftp-proxy contrib/pf/man contrib/pf/pfctl contrib/pf/pflogd sbin/pflogd sys/conf sys/contrib/altq/altq sys/contrib/pf/net sys/modules

2011-07-05 Thread Fabian Keil
Ermal Luçi wrote: > On Sat, Jul 2, 2011 at 5:33 PM, Pierre Lamy wrote: > > > > > > On 6/29/2011 1:22 PM, Fabian Keil wrote: > >> > >> "Bjoern A. Zeeb"  wrote: > >> > >>> Begin forwarded message: > >>> > >&g

Re: svn commit: r223637 - in head: . contrib/pf/authpf contrib/pf/ftp-proxy contrib/pf/man contrib/pf/pfctl contrib/pf/pflogd sbin/pflogd sys/conf sys/contrib/altq/altq sys/contrib/pf/net sys/modules

2011-06-29 Thread Fabian Keil
"Bjoern A. Zeeb" wrote: > Begin forwarded message: > > > From: "Bjoern A. Zeeb" > > Date: June 28, 2011 11:57:25 AM GMT+00:00 > > To: src-committ...@freebsd.org, svn-src-...@freebsd.org, > > svn-src-h...@freebsd.org > > Subject: svn commit: r223637 - in head: . contrib/pf/authpf > > contrib/p

Re: [PATCH] pf(4) patch from OpenBSD 4.5

2010-10-24 Thread Fabian Keil
Max Laier wrote: > C'mon ... where are the testers at? > > On 18.10.2010 11:10, Ermal Luçi wrote: > > Feedback is very welcome. > > Is there no-one testing Ermal's exciting patch? Let's help getting this > tested ... before we put it into SVN! > > fetch http://people.freebsd.org/~eri/pf45_1.

Re: pfstat 2.2 and FreeBSD

2006-07-11 Thread Fabian Keil
Fabian Keil <[EMAIL PROTECTED]> wrote: > Daniel Hartmeier <[EMAIL PROTECTED]> wrote: > > http://www.benzedrine.cx/pfstat.html > > > > (make sure to grab pfstat-2.2.tar.gz, older versions didn't fetch > > queue stats, either) > > Yesterday I ins

pfstat 2.2 and FreeBSD (was: SNMP access to pf ALTQ data?)

2006-07-08 Thread Fabian Keil
Daniel Hartmeier <[EMAIL PROTECTED]> wrote: > On Sat, Jul 08, 2006 at 02:18:12AM -0500, J. Buck Caldwell wrote: > > > Is it possible to track pf ALTQ usage with MRTG? I notice that > > FreeBSD's built-in bsnmpd has a module and mibs to support pf, but > > I know too little about SNMP to figure ou

Re: PF: dynamic rules

2006-02-14 Thread Fabian Keil
Fabian Keil <[EMAIL PROTECTED]> wrote: > "Victor V. Melnichenko" <[EMAIL PROTECTED]> wrote: > > > I have some problem with PF. > > I have pppoe server based on mpd. > > What i want: > > When client connect to the server some rules (e.g. altq

Re: PF: dynamic rules

2006-02-14 Thread Fabian Keil
"Victor V. Melnichenko" <[EMAIL PROTECTED]> wrote: > I have some problem with PF. > I have pppoe server based on mpd. > What i want: > When client connect to the server some rules (e.g. altq ... priq ... > etc) must be load and apply to the interface ng0 for example. When > client disconnected f