Re: pf not seeing inbound packets on netgraph interface

2012-01-04 Thread Michael Sierchio
man 4 enc On Tue, Jan 3, 2012 at 8:30 PM, Edward Carrel wrote: > On Jan 3, 2012, at 12:12 AM, Damien Fleuriot wrote: > >> Thinking -pf@ or -net@ would be a better place to discuss this, more chances >> of getting an answer. > > I was wondering about that. I'll send my question to -net@ to start.

Re: pf not seeing inbound packets on netgraph interface

2012-01-03 Thread Edward Carrel
On Jan 3, 2012, at 12:12 AM, Damien Fleuriot wrote: > Thinking -pf@ or -net@ would be a better place to discuss this, more chances > of getting an answer. I was wondering about that. I'll send my question to -net@ to start. Thanks. > Out of curiosity why not use a gif interface ? > I had that w

Re: pf not seeing inbound packets on netgraph interface

2012-01-03 Thread Damien Fleuriot
Thinking -pf@ or -net@ would be a better place to discuss this, more chances of getting an answer. Out of curiosity why not use a gif interface ? I had that working just fine with racoon and was able to actually firewall traffic on it with PF, iirc.__

Re: pf not seeing inbound packets on netgraph interface

2012-01-02 Thread Da Rock
On 01/03/12 16:17, Ed Carrel wrote: Hi freebsd-questions, I am running into a roadblock getting PF to filter traffic on a Netgraph interface representing an L2TP/IPSec connection. I have done some narrowing down of the problem, but was hoping to get some advice on figuring out where to go diggin