something like net.link.ether.bridge_pf?

Andre Oppermann andre at freebsd.org
Wed Sep 1 07:36:21 PDT 2004


Toxa wrote:
> I guess that pf now cannot be used on bridge, I can't see something
> similar to net.link.ether.bridge_pf (only net.link.ether.bridge_ipfw and
> net.link.ether.bridge_ipf), as the result, my fbsd machine can act as
> bridge, but pf rules actually doesn't work, simply allowing all
> connections.
> Is it possible to use pf on bridge? I want to move my bridge back from obsd to fbsd.

I have a generic PFIL_HOOKS mechnism in the works that will replace the
current direct dispatch into the packet filters with a generic way to
hooks into bridging and ether_input/output.  Although it won't make it
into 5.3R but it should be in 6.0-current soon.

-- 
Andre



More information about the freebsd-current mailing list