bridging and promiscuous mode... works but can"t get packets back

Etienne Robillard erob at videotron.ca
Mon May 10 11:30:22 PDT 2004


-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

Hi

I am quite new to this list :)

Context:
There's a bridge that does one logical net for two nics (vr0,rl0) on the
same box (freebsd-4.10-prerelease).

vr0 = outsite net (isp connected with dhclient)
rl0 = inside net (192.168.1.1) connected with a 10BaseT/UTP cable.

The module in use is bridge.ko and ipfw is in use by the bridge.
Moreover, there's two servers (dhcpd/dnscache) that do dhcp and
name-resolution on 192.168.1.1 (rl0).

Question: Why promiscuous-mode enabled interfaces routes packets
outbound successfully but not inbound ?? That is, why the private host
can lookup addresses, but fails to receive back tcp packets from the
internet ?

any ideas ?

I would really much appreciate any kinds of comments or hints concerning
this scenario...

Thanks

Etienne

-----BEGIN PGP SIGNATURE-----
Comment: quork teht!

iD8DBQFAn8qlfhO/J4JSDfYRAkdFAJ0SgLdUw4YIp2fUcfirDnhg+C2nkQCePaSW
NlICsDs/Rj2vySR3ikJjmvs=
=5O1W
-----END PGP SIGNATURE-----


More information about the freebsd-net mailing list