[nycbug-talk] OpenBSD PF help
bkominik at gmail.com
Wed Jun 13 10:51:48 EDT 2007
On 6/13/07, Kurt Miller <lists at intricatesoftware.com> wrote:
> On Monday 11 June 2007 12:23:51 pm Barry Kominik wrote:
> > Hi,
> > I'm having problems getting a pf filter working. I must be doing
> > simple wrong, anybody have any advice?
> > I have two public routable IP blocks, let's say 188.8.131.52/29 and
> > The colo routes both networks to my handoff. I have the int0 connected
> > the handoff from the co-lo and ext0 configured as the 184.108.40.206. I have
> > net.inet.ip.forwarding=1. Shouldn't basic routing work without even
> > the firewall? Hosts on the 2 network can ping trough to the
> > 220.127.116.11interface, but not beyond. Hosts on the internet can see
> > 18.104.22.168 but nothing on the 2. network. I can get this to work by setting
> > a bridge between the interfaces, but this strikes me as incorrect. Am I
> > missing something simple? If not I can pay for some consulting time.
> > Thanks,
> > Barry
> Is /etc/mygate on the router set?
Yes /etc/mygate is set and net.inet.ip.forwarding=1. I also configured
/etc/networks and tried /etc/gateway. pf is disabled. Shouldn't basic
routing work straight away? The routing table looks to me like it gets
populated correctly. If I do a tcpdump on the northbound interface I can see
the proper packets, but they are not traversing the router.
-------------- next part --------------
An HTML attachment was scrubbed...
More information about the talk