...@openbsd.org to get support. Though it
is expected that you try to search for the information yourself prior to
getting into contact
with the mailinglist (e.g. search on the internet and try to solve the problem
yourself
first).
Goodluck :)
Remko
On Mar 11, 2012, at 12:15 AM, just man man wrote:
>
whether there are issues there. If you can look into this yourself this will
help you in your later queste.
Thanks!
Remko
p.s Remove the -net mailing list when you reply!
--
/"\ With kind regards, | re...@elvandar.org
\ / Remko Lodder
Synopsis: [pf] [ip6] pf match engine is broken with ipv6
State-Changed-From-To: feedback->closed
State-Changed-By: remko
State-Changed-When: Sat Mar 26 23:59:58 UTC 2011
State-Changed-Why:
Eugene reported that that my feedback indeed resolved the problem. This
might be due to lack
ear/needed.
Are there others that confirm this?
>
> Sorry for your time; thanks for the answer.
No problem, my time wasn't wasted, because it helped you! That's the great
thing about the
community, as long as it helps people, we don't mind :-)
Cheers
REmko
>
>
Synopsis: [pf] [ip6] pf match engine is broken with ipv6
State-Changed-From-To: open->feedback
State-Changed-By: remko
State-Changed-When: Sat Mar 26 18:39:38 UTC 2011
State-Changed-Why:
>From the quick look I did, I can see it matches rule 107. It continues
parsing till it does no longer
packet, no worries !
It'd be more worried if the output remains silent :)
Thanks,
Remko
--
/"\ Best regards, | re...@freebsd.org
\ / Remko Lodder | re...@efnet
Xhttp://www.evilcoder.org/ |
/ \ ASCII Ribbon Campaign
machines at all, so
you must have been setting pfctl -x debug or something?
Thanks,
Remko
--
/"\ Best regards,| re...@freebsd.org
\ / Remko Lodder | re...@efnet
Xhttp://www.evilcoder.org/
Synopsis: [pf] pf doesn't block udp packets on multicast addresses
State-Changed-From-To: open->closed
State-Changed-By: remko
State-Changed-When: Fri Nov 13 08:21:53 UTC 2009
State-Changed-Why:
Traffic is being shown before hitting the firewall rule. (Chris
Buechler)
http://www.freebsd
On Oct 26, 2009, at 4:02 PM, jhell wrote:
On Mon, 26 Oct 2009 09:18, remko@ wrote:
On Oct 10, 2009, at 4:09 AM, jhell wrote:
I have a rule I used in ipfilter probably around 2 or so years ago
and I am now getting around to trying to implement in it my pf
rules. So far any results I have
s on a if_bridge(4), as the code to support this
feature has
not yet been implemented.
from the Manual page. I think that answers the question?
--
/"\ Best regards, | re...@freebsd.org
\ / Remko Lodder | re...@efnet
Xhttp://ww
Old Synopsis: [patch] add authpf folders to BSD.root.dist and BSD.var.dist
mtree files
New Synopsis: [patch] /usr/sbin/authpf: add authpf folders to BSD.root.dist and
BSD.var.dist mtree files
Responsible-Changed-From-To: freebsd-bugs->freebsd-pf
Responsible-Changed-By: remko
Responsible-Chan
Old Synopsis: deadlock in pf
New Synopsis: [pf]: deadlock in pf
Responsible-Changed-From-To: freebsd-bugs->freebsd-pf
Responsible-Changed-By: remko
Responsible-Changed-When: Wed Sep 17 13:06:54 UTC 2008
Responsible-Changed-Why:
Reassign to PF team
http://www.freebsd.org/cgi/query-pr.cgi
Yes since 7.0 this behaviour is intented. flags S/SA and keep state are
implied now. If you do not want to use them you set ''no state'' to get
rid of the statefull filter. I think that also grabs the flags S/SA
because that tells you when the statefull filter is being s
Synopsis: pf incorrect log priority
Responsible-Changed-From-To: freebsd-bugs->freebsd-pf
Responsible-Changed-By: remko
Responsible-Changed-When: Fri Sep 5 22:35:05 UTC 2008
Responsible-Changed-Why:
reassign to pf team
http://www.freebsd.org/cgi/query-pr.cgi?pr=127
TECTED]"
--
/"\ Best regards, | [EMAIL PROTECTED]
\ / Remko Lodder | [EMAIL PROTECTED]
Xhttp://www.evilcoder.org/ |
/ \ ASCII Ribbon Campaign | Against HTML Mail and News
___
freebsd-pf@freebsd
sed set to 1
>
Why are you filtering on your local IP stack anyway? filtering on lo0 is
not that common, or at least in my point of view not used often and
presents problems all the way.
Just a random reply to something I feel -strange-.
Thanks,
remko
--
/"\ Best regards,
Synopsis: connect randomly fails with EPERM with some pf rules
Responsible-Changed-From-To: freebsd-bugs->freebsd-pf
Responsible-Changed-By: remko
Responsible-Changed-When: Thu Mar 13 16:53:53 UTC 2008
Responsible-Changed-Why:
reassign to pf team.
http://www.freebsd.org/cgi/query-pr.cgi
freebsd-pf (PF
mailinglist) because all the guru's and people interested in PF are
there...
So as Chris said; no need to stop using PF on FreeBSD at all, but if you
are interested or able to fix certain problems.. please do not hesitate to
share that with the rest of the PF group :-)
Cheers,
Synopsis: [pf] nat rule of pf without "on" clause causes invalid packed chksum
State-Changed-From-To: open->closed
State-Changed-By: remko
State-Changed-When: Tue Feb 12 06:26:56 UTC 2008
State-Changed-Why:
Daniel asked for feedback in aug 2007, but I didn't see a reply
Synopsis: pf(4) uses invalid timeout values for half-closed connections (fix
included)
Responsible-Changed-From-To: freebsd-bugs->freebsd-pf
Responsible-Changed-By: remko
Responsible-Changed-When: Tue Nov 20 17:47:23 UTC 2007
Responsible-Changed-Why:
reassign to maintaining group.
h
Synopsis: [carp] carp+pf delay with high state limit
Responsible-Changed-From-To: pf->freebsd-pf
Responsible-Changed-By: remko
Responsible-Changed-When: Fri Nov 16 07:13:21 UTC 2007
Responsible-Changed-Why:
reassign to "standard" group
http://www.freebsd.org/cgi/query-pr.
The following reply was made to PR kern/117827; it has been noted by GNATS.
From: Remko Lodder <[EMAIL PROTECTED]>
To: Dmitry Rybin <[EMAIL PROTECTED]>
Cc: [EMAIL PROTECTED]
Subject: Re: kern/117827: Kernel Panic
Date: Mon, 05 Nov 2007 18:46:02 +0100
Dmitry Rybin wrote
Synopsis: [patch] teach tcpdump(1) to cope with the new-style pflog(4) output
Responsible-Changed-From-To: freebsd-bugs->freebsd-pf
Responsible-Changed-By: remko
Responsible-Changed-When: Thu Sep 27 17:01:13 UTC 2007
Responsible-Changed-Why:
Reassign to PF team since this influences the
Old Synopsis: Different anchor wildcards in pfctl and kernel
New Synopsis: [pf]: Different anchor wildcards in pfctl and kernel
Responsible-Changed-From-To: freebsd-bugs->freebsd-pf
Responsible-Changed-By: remko
Responsible-Changed-When: Mon Sep 3 12:50:13 UTC 2007
Responsible-Changed-
Synopsis: pf nat -> ($if) works only intermittently
Responsible-Changed-From-To: freebsd-bugs->freebsd-pf
Responsible-Changed-By: remko
Responsible-Changed-When: Wed Aug 22 15:32:08 UTC 2007
Responsible-Changed-Why:
Redirect to the PF team
http://www.freebsd.org/cgi/query-pr.cgi?pr=
Synopsis: pf does not use IPv6 interface addresses at startups
Responsible-Changed-From-To: freebsd-bugs->freebsd-pf
Responsible-Changed-By: remko
Responsible-Changed-When: Wed Jun 13 11:14:43 UTC 2007
Responsible-Changed-Why:
reassign to PF team, note that the pfboot had been discussed a
Old Synopsis: missing option "syncpeer" in pfsync startup script
New Synopsis: [pfsync]: missing option "syncpeer" in pfsync startup script
Responsible-Changed-From-To: freebsd-bugs->freebsd-pf
Responsible-Changed-By: remko
Responsible-Changed-When: Wed Apr 4 13:36:31 UTC 2
Synopsis: tagged parameter on nat not working
Responsible-Changed-From-To: freebsd-bugs->freebsd-pf
Responsible-Changed-By: remko
Responsible-Changed-When: Mon Mar 26 09:11:58 UTC 2007
Responsible-Changed-Why:
Over to maintainer group, although this might not be fixed in the
5_branch since (f
Synopsis: nat rule of pf without "on" clause causes invalid packed chksum
Responsible-Changed-From-To: freebsd-bugs->freebsd-pf
Responsible-Changed-By: remko
Responsible-Changed-When: Fri Mar 23 09:02:04 UTC 2007
Responsible-Changed-Why:
PF issue
http://www.freebsd.org/cgi/qu
Old Synopsis: parameter syncpeer only works if ip address is backwards
New Synopsis: [pf] parameter syncpeer only works if ip address is backwards
Responsible-Changed-From-To: freebsd-i386->freebsd-pf
Responsible-Changed-By: remko
Responsible-Changed-When: Fri Mar 16 15:10:02 UTC 2007
Responsi
Synopsis: fatal trap 12 at restart of PF with ALTQ if ng0 device has detached
Responsible-Changed-From-To: freebsd-bugs->freebsd-pf
Responsible-Changed-By: remko
Responsible-Changed-When: Wed Dec 6 09:24:33 UTC 2006
Responsible-Changed-Why:
This seems more like something for the pf group.
h
;993 143"
squid_ports = "3128"
mysql_ports = "3306"
email_ports = ""{ 25 110 }""
all_http_ports = ""{ 80 8080 7080 443 }""
tcp_ports = "{ 22 21 8021 7021 { 80 8080 7080 443 } 993 143 }"
Note
___
freebsd-pf@freebsd.org mailing list
http://lists.freebsd.org/mailman/listinfo/freebsd-pf
To unsubscribe, send any mail to "[EMAIL PROTECTED]"
Dude,
You really should start _reading_ and _understanding_ what people
tell you. I think this is the same problem as you raised before.
P
ve your problem.
Remko
--
Kind regards,
Remko Lodder ** [EMAIL PROTECTED]
FreeBSD ** [EMAIL PROTECTED]
___
freebsd-pf@freebsd.org mailing list
http://lists.freebsd.org/mailman/listinfo/freebsd-pf
To unsubscribe, send any mail to "[EMAIL PROTECTED]"
easier to understand,
Cheers,
Remko
--
Kind regards,
Remko Lodder ** [EMAIL PROTECTED]
FreeBSD** [EMAIL PROTECTED]
/* Quis custodiet ipsos custodes */
___
freebsd-pf@freebsd.org mailing list
http://lists.f
35 matches
Mail list logo