pf NAT and VNET Jails

Julian Elischer julian at freebsd.org
Sat Oct 31 23:16:51 UTC 2015


On 11/1/15 2:50 AM, Shawn Webb wrote:
> I'm at r290228 on amd64. I'm not sure which revision I was on last when it
> last worked, but it seems VNET jails aren't working anymore.
>
> I've got a bridge, bridge1, with an IP of 192.168.7.1. The VNET jails set
> their default route to 192.168.7.1. The host simply NATs outbound from
> 192.168.7.0/24 to the rest of the world. The various epairs get added to
> bridge1 and assigned to each jail. Pretty simple setup. That worked until
> today. When I do tcpdump on my public-facing NIC, I see that NAT isn't
> applied. When I run `ping 8.8.8.8` from the jail, the jail's 192.168.7.0/24
> address gets sent on the wire.
>
> Let me know what I can do to help debug this further.

send the list your setup script/settings?
>
> Thanks,
>
> Shawn Webb
> _______________________________________________
> freebsd-current at freebsd.org mailing list
> https://lists.freebsd.org/mailman/listinfo/freebsd-current
> To unsubscribe, send any mail to "freebsd-current-unsubscribe at freebsd.org"
>



More information about the freebsd-current mailing list