[Bug 212013] 11.0-RC1: vimage jail with pf not working

bugzilla-noreply at freebsd.org bugzilla-noreply at freebsd.org
Sun Aug 21 00:14:34 UTC 2016


https://bugs.freebsd.org/bugzilla/show_bug.cgi?id=212013

Bjoern A. Zeeb <bz at FreeBSD.org> changed:

           What    |Removed                     |Added
----------------------------------------------------------------------------
                 CC|                            |bz at FreeBSD.org

--- Comment #1 from Bjoern A. Zeeb <bz at FreeBSD.org> ---
Just in reply to #3 as you say yourself in your description, it's outgoing
packets, but your rule inside the jail specifies "in":

0 block drop in quick on epair23b inet proto tcp from any to any port = nicname

Can you change that to "out" and see if it starts working?

Currently on your "in" directions whois packets would originate from src port
43 and thus don't match the dest port 43.

-- 
You are receiving this mail because:
You are the assignee for the bug.


More information about the freebsd-bugs mailing list