transparent bridge ~ firewall

Christopher Hilton chris at vindaloo.com
Wed May 28 01:30:46 UTC 2014


On May 20, 2014, at 12:41 AM, Jim Pazarena <fquest at paz.bz> wrote:

> Is it possible to configure fbsd so that it passes traffic thru two
> nics "transparently", (with a third nic installed as the management IP)?
> 
> So that firewall rules can be applied between those two transparent
> nics? Don't want NAT, don't want routing. Just firewall "allow", "drop",
> or re-direct.
> 
> I purchased a device which uses debian to do this. I would like to
> see if I can duplicate the functions on FreeBSD, my OS of choice.
> 


FreeBSD may be able to do this by building a bridge device between two interfaces and then using pf on the individual interfaces. I'm not 100% on the capabilities of FreeBSD's bridge devices. I do this on OpenBSD and it works very well. 

-- Chris

-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 841 bytes
Desc: Message signed with OpenPGP using GPGMail
URL: <http://lists.freebsd.org/pipermail/freebsd-questions/attachments/20140527/870ab45f/attachment.sig>


More information about the freebsd-questions mailing list