From owner-freebsd-questions@freebsd.org  Sun Jun 30 05:25:57 2019
Return-Path: <owner-freebsd-questions@freebsd.org>
Delivered-To: freebsd-questions@mailman.ysv.freebsd.org
Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2610:1c1:1:606c::19:1])
 by mailman.ysv.freebsd.org (Postfix) with ESMTP id D541215CB59F
 for <freebsd-questions@mailman.ysv.freebsd.org>;
 Sun, 30 Jun 2019 05:25:56 +0000 (UTC)
 (envelope-from dave.mehler@gmail.com)
Received: from mail-wr1-x432.google.com (mail-wr1-x432.google.com
 [IPv6:2a00:1450:4864:20::432])
 (using TLSv1.3 with cipher TLS_AES_128_GCM_SHA256 (128/128 bits)
 server-signature RSA-PSS (4096 bits)
 client-signature RSA-PSS (2048 bits) client-digest SHA256)
 (Client CN "smtp.gmail.com", Issuer "GTS CA 1O1" (verified OK))
 by mx1.freebsd.org (Postfix) with ESMTPS id B168B70D1C
 for <freebsd-questions@freebsd.org>; Sun, 30 Jun 2019 05:25:55 +0000 (UTC)
 (envelope-from dave.mehler@gmail.com)
Received: by mail-wr1-x432.google.com with SMTP id c2so10222799wrm.8
 for <freebsd-questions@freebsd.org>; Sat, 29 Jun 2019 22:25:55 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=gmail.com; s=20161025;
 h=mime-version:from:date:message-id:subject:to;
 bh=IBcrXqc4d8X9bjR+ZhRiZB128lDl+vh5icT8HwLeSQw=;
 b=DGQ6NKMVVC3TiHILHax36dW7pp0O23OIwO4oVDjKgNP38P7bHz+RxxlnnQgYBh7zOK
 Rib+fMyYE77HBC0br7jQ0nyqnKzm/EuLuSTgdEdAGMeT+QdlSuk9bg8jMy5yKd5Zmb5H
 IBYOALBgxvBXtGYIP5WDaujAFLPfEQYUUI9nXgLS8COmCDxM+5LXZVoLFfNLfMxxMqDd
 /WlscFxC2SYAAS/aARwFJoEazTl/hoRkv/TdOtwJmu8IBGrXzw63aJftnWSB9Ki+6tAt
 e/v3Kke781BHABsf/5gys8NTjf+PB05UaC2Ti6ht+ktBXxFWllG7Nvt2JN2w4onbcdGZ
 sw9w==
X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed;
 d=1e100.net; s=20161025;
 h=x-gm-message-state:mime-version:from:date:message-id:subject:to;
 bh=IBcrXqc4d8X9bjR+ZhRiZB128lDl+vh5icT8HwLeSQw=;
 b=OMZsfuZnYCNRkpLaB8rVZov7KvXS9nExmy5RWwKr1hSEHnb9pC+/ar1t9EA8E1CxPa
 /CvOwdBT4hgnpSH/7WjA4QlIfxiWTvArZgIgjC6VTFTbHUggJOGOPBa5zUd+fP3KYS2s
 8T0RMIb3wsBLFja8QHnBCwMt5eZ+Ykfdx+zYh4Vu22acV6vp0ixJY/fp6p4N5c6ebXxT
 /uGaqxVNgtgtGS7DHuHCno5CqL6e74jfGntG9lyE3ScH5YOBHVElRglzw9x2R5TXZPG2
 FO7XKzdiGHB4SpKsu3Bf/aS/r24bCEkFJZDlNb9L7cWvJfzrcEI9T/g2/J0G4pVmpuyW
 4k+A==
X-Gm-Message-State: APjAAAWBeH+RqTo2Wi5AYI8JQcNPQuhvLboWZgfScZSWMSmEmyUAyhWA
 8NwRAk+CSTHw27aW666RLOkuzCmXR9UUotidsYP30rKq
X-Google-Smtp-Source: APXvYqx2PQK6MvGyE87+Ite/JcHloW2HxeUuSywv0dpLgXl5cadKqDSoFqgDSRwjhbYpzjklnOraHkvcVuWih8pqvFA=
X-Received: by 2002:a5d:5706:: with SMTP id a6mr12885272wrv.224.1561872354239; 
 Sat, 29 Jun 2019 22:25:54 -0700 (PDT)
MIME-Version: 1.0
Received: by 2002:a05:6000:1091:0:0:0:0 with HTTP; Sat, 29 Jun 2019 22:25:53
 -0700 (PDT)
From: David Mehler <dave.mehler@gmail.com>
Date: Sun, 30 Jun 2019 01:25:53 -0400
Message-ID: <CAPORhP4zh--Qk1VBaAm+-NHG_-7JWUS4sbq9+0qTucMgv9eYAA@mail.gmail.com>
Subject: p0f, bpf, and jail
To: freebsd-questions <freebsd-questions@freebsd.org>
Content-Type: text/plain; charset="UTF-8"
X-Rspamd-Queue-Id: B168B70D1C
X-Spamd-Bar: ------
Authentication-Results: mx1.freebsd.org;
 dkim=pass header.d=gmail.com header.s=20161025 header.b=DGQ6NKMV;
 dmarc=pass (policy=none) header.from=gmail.com;
 spf=pass (mx1.freebsd.org: domain of davemehler@gmail.com designates
 2a00:1450:4864:20::432 as permitted sender)
 smtp.mailfrom=davemehler@gmail.com
X-Spamd-Result: default: False [-6.85 / 15.00];
 R_SPF_ALLOW(-0.20)[+ip6:2a00:1450:4000::/36];
 FREEMAIL_FROM(0.00)[gmail.com]; RCVD_COUNT_THREE(0.00)[3];
 TO_DN_ALL(0.00)[]; DKIM_TRACE(0.00)[gmail.com:+];
 MX_GOOD(-0.01)[cached: alt3.gmail-smtp-in.l.google.com];
 DMARC_POLICY_ALLOW(-0.50)[gmail.com,none];
 NEURAL_HAM_SHORT(-0.93)[-0.930,0]; FROM_EQ_ENVFROM(0.00)[];
 MIME_TRACE(0.00)[0:+]; FREEMAIL_ENVFROM(0.00)[gmail.com];
 ASN(0.00)[asn:15169, ipnet:2a00:1450::/32, country:US];
 TAGGED_FROM(0.00)[];
 DWL_DNSWL_NONE(0.00)[gmail.com.dwl.dnswl.org : 127.0.5.0];
 ARC_NA(0.00)[]; NEURAL_HAM_MEDIUM(-1.00)[-1.000,0];
 R_DKIM_ALLOW(-0.20)[gmail.com:s=20161025]; FROM_HAS_DN(0.00)[];
 TO_MATCH_ENVRCPT_ALL(0.00)[]; NEURAL_HAM_LONG(-1.00)[-1.000,0];
 MIME_GOOD(-0.10)[text/plain];
 PREVIOUSLY_DELIVERED(0.00)[freebsd-questions@freebsd.org];
 RCPT_COUNT_ONE(0.00)[1]; RCVD_TLS_LAST(0.00)[];
 RCVD_IN_DNSWL_NONE(0.00)[2.3.4.0.0.0.0.0.0.0.0.0.0.0.0.0.0.2.0.0.4.6.8.4.0.5.4.1.0.0.a.2.list.dnswl.org
 : 127.0.5.0]; 
 IP_SCORE(-2.91)[ip: (-9.57), ipnet: 2a00:1450::/32(-2.60), asn: 15169(-2.34),
 country: US(-0.06)]
X-BeenThere: freebsd-questions@freebsd.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: User questions <freebsd-questions.freebsd.org>
List-Unsubscribe: <https://lists.freebsd.org/mailman/options/freebsd-questions>, 
 <mailto:freebsd-questions-request@freebsd.org?subject=unsubscribe>
List-Archive: <http://lists.freebsd.org/pipermail/freebsd-questions/>
List-Post: <mailto:freebsd-questions@freebsd.org>
List-Help: <mailto:freebsd-questions-request@freebsd.org?subject=help>
List-Subscribe: <https://lists.freebsd.org/mailman/listinfo/freebsd-questions>, 
 <mailto:freebsd-questions-request@freebsd.org?subject=subscribe>
X-List-Received-Date: Sun, 30 Jun 2019 05:25:57 -0000

Hello,

Is anyone using p0f in a jail on FreeBSD 12? I'm getting two errors
one about bpf not being available, the other about how the jail is
trying to sniff the host's network interface. The tcpdump-type
expression is 'tcp dst 1515'

Thanks.
Dave.