Re: Jail isolation from internal network and host (pf, vnet (vimage), freebsd 11.1)

2017-11-08 Thread irukandji via freebsd-pf
fic passes as there would be no pf. I am missing something but i have no clue what... Thank you. On tor, 2017-11-07 at 19:18 +0100, Goran Mekić wrote: > > On Tue, Nov 07, 2017 at 04:43:48PM +0100, irukandji via freebsd-pf wrote: > > Hi Everyone, > > > > > > Pr

Jail isolation from internal network and host (pf, vnet (vimage), freebsd 11.1)

2017-11-07 Thread irukandji via freebsd-pf
Hi Everyone, Problem: isolating jail away from internal network and host "hosting" it. Environment: jail with 192.168.1.100, host 192.168.1.200, VIMAGE enabled kernel, VNET (vnet0:JID) over bridge interface (bridge0), single network card on re0 I am unable prevent jail accessing host (192.168.1.2