From owner-freebsd-pf@FreeBSD.ORG Sun Mar 20 19:20:13 2005 Return-Path: Delivered-To: freebsd-pf@freebsd.org Received: from mx1.FreeBSD.org (mx1.freebsd.org [216.136.204.125]) by hub.freebsd.org (Postfix) with ESMTP id A1FC116A4CE; Sun, 20 Mar 2005 19:20:13 +0000 (GMT) Received: from r2d2.bromirski.net (r2d2.bromirski.net [217.153.57.194]) by mx1.FreeBSD.org (Postfix) with ESMTP id E78EC43D31; Sun, 20 Mar 2005 19:20:12 +0000 (GMT) (envelope-from lbromirski@mr0vka.eu.org) Received: from [127.0.0.1] (shield.wesola.pl [62.111.150.246]) by r2d2.bromirski.net (Postfix) with ESMTP id 29A7C108972; Sun, 20 Mar 2005 20:20:10 +0100 (CET) Message-ID: <423DCD9A.4010401@mr0vka.eu.org> Date: Sun, 20 Mar 2005 20:23:06 +0100 From: =?ISO-8859-2?Q?=A3ukasz_Bromirski?= User-Agent: Mozilla Thunderbird 1.0.2 (Windows/20050318) X-Accept-Language: en-us, en MIME-Version: 1.0 To: freebsd-net@freebsd.org, freebsd-pf@freebsd.org References: <42348BDF.2080101@authtec.com> <20050313230915.GF3697@diehard.n-r-g.com> In-Reply-To: <20050313230915.GF3697@diehard.n-r-g.com> Content-Type: text/plain; charset=ISO-8859-2; format=flowed Content-Transfer-Encoding: 8bit X-Scan-Module: SMTP[2005.03.18 (2004.11.26)] cc: sam.wun@authtec.com cc: Claudio Jeker Subject: Re: OpenBGPD with FreeBSD X-BeenThere: freebsd-pf@freebsd.org X-Mailman-Version: 2.1.1 Precedence: list List-Id: Technical discussion and general questions about packet filter (pf) List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Sun, 20 Mar 2005 19:20:13 -0000 Claudio Jeker wrote: >>Had openbgpd ported to freebsd or is it in any progress? >>If I want to install it in FreeBSD, is there any guideline for me to follow? > You have to remove the full pfkey interface and replace it with dummy > functions as it is incompatible. So tcp md5 does not work but I think it > is still broken in FreeBSD anyway. > Here is a diff I created some time ago. Perhaps some other minor changes > are needed. I've created short HOWTO as well as diff to make OpenBGPd easily installable on FreeBSD (tested 5.3/5.4). It works with pf (pushing prefixes to pf tables), but of course lacks MD5 authorization for peers. Claudio, thanks for suggestions about the pfkey. Here's short HOWTO: http://lukasz.bromirski.net/projekty/openbgpd/index-en.html If anyone will push this further and make a port out of it, it would be really nice. -- this space was intentionally left blank | Łukasz Bromirski you can insert your favourite quote here | lukasz:bromirski,net