From owner-freebsd-pf@freebsd.org Thu Oct 1 13:03:40 2015 Return-Path: Delivered-To: freebsd-pf@mailman.ysv.freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2001:1900:2254:206a::19:1]) by mailman.ysv.freebsd.org (Postfix) with ESMTP id 71FA5A0DDB4 for ; Thu, 1 Oct 2015 13:03:40 +0000 (UTC) (envelope-from xi@borderworlds.dk) Received: from out1-smtp.messagingengine.com (out1-smtp.messagingengine.com [66.111.4.25]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (Client did not present a certificate) by mx1.freebsd.org (Postfix) with ESMTPS id 445F41EA2 for ; Thu, 1 Oct 2015 13:03:39 +0000 (UTC) (envelope-from xi@borderworlds.dk) Received: from compute3.internal (compute3.nyi.internal [10.202.2.43]) by mailout.nyi.internal (Postfix) with ESMTP id 3C31B20296 for ; Thu, 1 Oct 2015 09:03:38 -0400 (EDT) Received: from frontend2 ([10.202.2.161]) by compute3.internal (MEProxy); Thu, 01 Oct 2015 09:03:38 -0400 DKIM-Signature: v=1; a=rsa-sha1; c=relaxed/relaxed; d=borderworlds.dk; h=content-transfer-encoding:content-type:date:from:in-reply-to :message-id:mime-version:references:subject:to:x-sasl-enc :x-sasl-enc; s=mesmtp; bh=0Tut2PvKTYL7TcsAXv1yx0atxrE=; b=dh4sgv F2A5YMXAhb/B2HAYzcLStBZ54tHIdLaWJXLV8Iy4OqAHGZ1M45zUDxsfkITkcm6U TNFuMAVi32xV11zDl0SxcHgvqV2ZmxKLn/vLl1LGmcR45YhxN8S/v4Wb8JFH3w9O GQElpqM9M/iIAOUkSSCUjRk21k9aGcPrjWv7g= DKIM-Signature: v=1; a=rsa-sha1; c=relaxed/relaxed; d= messagingengine.com; h=content-transfer-encoding:content-type :date:from:in-reply-to:message-id:mime-version:references :subject:to:x-sasl-enc:x-sasl-enc; s=smtpout; bh=0Tut2PvKTYL7Tcs AXv1yx0atxrE=; b=lya1Ja+dinJVpVShS7uxixLt7dl2uXT7E8VXPNa/S3/XeaY 4DnjcJHkFabACQrU45iqg1FCy0+tLgGa9XZz3b3SUbv5Ik3t1cVOkuUholM0SB18 H2dHDOmQ035WJw01Tvpxa5otsyEG9PKbI5RiwLnChWtoTWW8y3c2HN8G3bq4= X-Sasl-enc: vLIvmcv7XE3PMYi5ATqDJy1E+nWWBLfGxNEHgcvvwrwY 1443704617 Received: from borg.borderworlds.dk (unknown [89.233.7.66]) by mail.messagingengine.com (Postfix) with ESMTPA id 7F9846800F1; Thu, 1 Oct 2015 09:03:37 -0400 (EDT) Subject: Re: Cannot connect to self IP after upgrade to FreeBSD 10.2 To: Miroslav Lachman <000.fbsd@quip.cz>, freebsd-pf@freebsd.org References: <560D2C62.6000504@quip.cz> From: Christian Laursen Organization: The Border Worlds Message-ID: <560D2F28.8060109@borderworlds.dk> Date: Thu, 1 Oct 2015 15:03:36 +0200 User-Agent: Mozilla/5.0 (X11; FreeBSD amd64; rv:38.0) Gecko/20100101 Thunderbird/38.2.0 MIME-Version: 1.0 In-Reply-To: <560D2C62.6000504@quip.cz> Content-Type: text/plain; charset=windows-1252; format=flowed Content-Transfer-Encoding: 7bit X-BeenThere: freebsd-pf@freebsd.org X-Mailman-Version: 2.1.20 Precedence: list List-Id: "Technical discussion and general questions about packet filter \(pf\)" List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Thu, 01 Oct 2015 13:03:40 -0000 On 10/01/15 14:51, Miroslav Lachman wrote: > [snip] > Are there any easy option to user antispoof and still be able to > connect from machine itself? I don't know anything about the antispoof feature, but I always put "set skip on lo0" at the top of my pf rulesets. That will bypass pf for all local traffic and I think it will work in this case. /Christian