routing problem (with corrected scheme)

Donatas donatas at lrtc.net
Mon Aug 29 05:24:35 GMT 2005


Good morning,
after comprehensive tests I am glad to inform that your suggestions works just fine, so - thanks for help solving our problem.

Truth, i've got one question realated to the exampel rule below:
>ipfw add 1000 fwd ip4 ip from any to any out recv em0 xmit vlan{mumble}

After several tests i have recognized that localy generated packets (like icmp traffic) never matches this rule. The problem is in "xmit vlan{number}" part. Is it so because of different place of packet input? Transit packets come to firewall from ether_demux and passes the rule, while localy generated packets come to firewall from ip_input and fails on this rule? Using "pass" instead of "fwd" results in the same.


----- Original Message ----- 
From: "Julian Elischer" <julian at elischer.org>
To: "Donatas" <donatas at lrtc.net>
Sent: Saturday, August 20, 2005 8:31 AM
Subject: Re: routing problem (with corrected scheme)


> did my sugestion work?
>


More information about the freebsd-net mailing list