Re: pf filtering on bridge totally blown my mind

2020-11-27 Thread kasak
27.11.2020 13:04, kasak пишет: 27.11.2020 12:58, Zé Loff пишет: On Fri, Nov 27, 2020 at 12:05:49PM +0300, kasak wrote: Mine configuration requires to use a brigde: I have files: cat /etc/hostname.bridge0 add vether0 add em1 add tap1 up files hostname.em1 and tap1 just contain "up" and fi

Re: pf filtering on bridge totally blown my mind

2020-11-27 Thread Janne Johansson
Den fre 27 nov. 2020 kl 10:08 skrev kasak : > Mine configuration requires to use a brigde: > I have files: > > gater:~$ doas pfctl -sr > block return all > pass all flags S/SA > block drop in on em0 all > pass out on em0 inet from 172.16.0.0/12 to any flags S/SA nat-to > 212.233.112.10 > pass in

Re: pf filtering on bridge totally blown my mind

2020-11-27 Thread kasak
27.11.2020 12:58, Zé Loff пишет: On Fri, Nov 27, 2020 at 12:05:49PM +0300, kasak wrote: Mine configuration requires to use a brigde: I have files: cat /etc/hostname.bridge0 add vether0 add em1 add tap1 up files hostname.em1 and tap1 just contain "up" and file hostname.vether0 contain: ine

Re: pf filtering on bridge totally blown my mind

2020-11-27 Thread Zé Loff
On Fri, Nov 27, 2020 at 12:05:49PM +0300, kasak wrote: > Mine configuration requires to use a brigde: > > I have files: > > cat /etc/hostname.bridge0 > add vether0 > add em1 > add tap1 > up > > files hostname.em1 and tap1 just contain "up" > > and file hostname.vether0 contain: > > inet 172.16

pf filtering on bridge totally blown my mind

2020-11-27 Thread kasak
Mine configuration requires to use a brigde: I have files: cat /etc/hostname.bridge0 add vether0 add em1 add tap1 up files hostname.em1 and tap1 just contain "up" and file hostname.vether0 contain: inet 172.16.0.1 255.240.0.0 NONE description "LAN Link" this is ifconfig: em1: flags=8b43 mt