NFSv4 connections and pf: BAD state stalling issues?

2018-10-31 Thread John Jasen
in advance! -- John Jasen ___ freebsd-pf@freebsd.org mailing list https://lists.freebsd.org/mailman/listinfo/freebsd-pf To unsubscribe, send any mail to "freebsd-pf-unsubscr...@freebsd.org"

Re: problems with tftp-proxy in 11.1?

2017-12-07 Thread John Jasen
On Wed, Dec 6, 2017 at 5:01 PM, Kristof Provost wrote: > On 6 Dec 2017, at 21:25, John Jasen wrote: > > On 12/04/2017 02:47 PM, Kristof Provost wrote: > > Okay, so this is interesting: > > 25013: ioctl(4,0xc04c4417 { IORW 0x44('D'), 23, 76 },0x7fffe5b0) ERR

Re: problems with tftp-proxy in 11.1?

2017-12-06 Thread John Jasen
On 12/04/2017 02:47 PM, Kristof Provost wrote: > > On 4 Dec 2017, at 19:57, John Jasen wrote: > > Depending on circumstances, we see a lot or a very few of the > following > messages: > "pf connection lookup failed (no rdr?)" > > That means the

Re: problems with tftp-proxy in 11.1?

2017-12-04 Thread John Jasen
e a lot or a very few of the following messages: "pf connection lookup failed (no rdr?)" We also see very slow tftp response through the 11.1 firewall, with occasional complete failures. On 12/03/2017 11:40 AM, Kristof Provost wrote: > On 2 Dec 2017, at 4:56, John Jasen wrote: &g

problems with tftp-proxy in 11.1?

2017-12-01 Thread John Jasen
Attempts to run tftp-proxy across a freebsd system running pf result in very slow performance and an endless amount of: "pf connection lookup failed (no rdr?)" I have rdr-anchors for tftp-proxy/* as specified and the anchor tftp-proxy/*. I also have the rdr => localhost:6969 for redirection, and

RE: Max altq bandwidth 4.26 Gbit

2016-08-11 Thread John Jasen
Should FreeBSD fix altq, or follow OpenBSD's lead in this regard? http://undeadly.org/cgi?action=article&sid=20140419151959 On 08/11/2016 08:00 AM, freebsd-pf-requ...@freebsd.org wrote: > > Today's Topics: > >1. RE: Max altq bandwidth 4.26 Gbit (Radek Krej?a) >2. Re: Max altq bandwidth 4

bug in tftp-proxy, unable to write rdr rules

2015-03-17 Thread John Jasen
https://bugs.freebsd.org/bugzilla/show_bug.cgi?id=198674 In FreeBSD 10.1-RELEASE-p6, a rule similar to the below will result in no tftp connection, and entries in /var/log/messages such as: "Mar 17 23:38:28 vm-fbd-fw-02 tftp-proxy[28376]: pf connection lookup failed (no rdr?)" rdr pass log

Re: Bug 195407 - relayd crashes kernel under 10.1-RELEASE

2015-03-06 Thread John Jasen
More accurately, relayd from pkg install is unsafe to use. Again, like the SSL issue I also encountered, relayd from ports appears to be fine. On 03/06/2015 08:49 AM, John Jasen wrote: > Also, for general information. > > relayd is, by all appearances, unusable under FreeBSD 10.1.

Bug 195407 - relayd crashes kernel under 10.1-RELEASE

2015-03-06 Thread John Jasen
Also, for general information. relayd is, by all appearances, unusable under FreeBSD 10.1. https://bugs.freebsd.org/bugzilla/show_bug.cgi?id=195407 ___ freebsd-pf@freebsd.org mailing list http://lists.freebsd.org/mailman/listinfo/freebsd-pf To unsubscri

Bug 198315 - net/relayd does not work with ssl services

2015-03-06 Thread John Jasen
For general information, in case anyone else bumped/bumps into this: As an executive summary, relayd from pkg won't work with SSL/TLS enabled services. Adding SSL options in /etc/make.comf and installing from ports seems to resolve this issue. https://bugs.freebsd.org/bugzilla/show_bug.cgi?id=19