RE: new firewall config

2009-12-16 Thread Greg Hennessy
s/block all/block log all/ Or debug will come back and bite you. Regards Greg -Original Message- From: owner-freebsd...@freebsd.org [mailto:owner-freebsd...@freebsd.org] On Behalf Of David Mehler Sent: 16 December 2009 12:59 AM To: freebsd-pf@freebsd.org Subject: new firewall confi

Re: PF Transparent Bridge Firewall + CARP

2009-12-16 Thread Tom Judge
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 Kevin wrote: > >> -Original Message- >> From: Kevin [mailto:k...@kevinkevin.com] >> I have what I would consider not a standard firewall scenario that >> requires a second, redundant PF firewall. My first / main firewall is >> pf + transparen

RE: PF Transparent Bridge Firewall + CARP

2009-12-16 Thread Kevin
> -Original Message- > From: Tom Judge > Sent: Wednesday, December 16, 2009 1:20 PM > To: Kevin > Cc: freebsd-pf@freebsd.org > Subject: Re: PF Transparent Bridge Firewall + CARP > >[router] > | > [--switch 1--] > || > [FW1]--{pfsync}--[FW2] >

Re: PF Transparent Bridge Firewall + CARP

2009-12-16 Thread Tom Judge
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 Kevin wrote: > > > > My environment would be better described as the following : > >[router] > | > [--switch 1 [vlan1]--] > || > [FW1]--{pfsync}--[FW2] > || > [--switch 1 [vlan2]