From nobody Sun Jul 13 14:46:51 2025 X-Original-To: freebsd-net@mlmmj.nyi.freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2610:1c1:1:606c::19:1]) by mlmmj.nyi.freebsd.org (Postfix) with ESMTP id 4bg7ZT3skkz613Q7 for ; Sun, 13 Jul 2025 14:46:57 +0000 (UTC) (envelope-from ben@benhutton.com.au) Received: from mail.myuniquemail.com (mail.myuniquemail.com [115.70.107.139]) (using TLSv1.3 with cipher TLS_AES_256_GCM_SHA384 (256/256 bits) key-exchange X25519 server-signature RSA-PSS (4096 bits) server-digest SHA256) (Client did not present a certificate) by mx1.freebsd.org (Postfix) with ESMTPS id 4bg7ZS5Kchz3P5k for ; Sun, 13 Jul 2025 14:46:56 +0000 (UTC) (envelope-from ben@benhutton.com.au) Authentication-Results: mx1.freebsd.org; none Received: from [10.128.2.198] (unknown [10.128.10.1]) (using TLSv1.3 with cipher TLS_AES_128_GCM_SHA256 (128/128 bits) key-exchange X25519 server-signature ECDSA (prime256v1) server-digest SHA256) (No client certificate requested) by mail.myuniquemail.com (Postfix) with ESMTPSA id C3E9E1F1626; Sun, 13 Jul 2025 22:46:51 +0800 (AWST) Message-ID: <5d71a7f0-c9d0-432c-96e1-4f4f6f5e6bbf@benhutton.com.au> Date: Sun, 13 Jul 2025 22:46:51 +0800 List-Id: Networking and TCP/IP with FreeBSD List-Archive: https://lists.freebsd.org/archives/freebsd-net List-Help: List-Post: List-Subscribe: List-Unsubscribe: Sender: owner-freebsd-net@FreeBSD.org MIME-Version: 1.0 User-Agent: Mozilla Thunderbird Subject: Re: WLAN and Bridge To: "Bjoern A. Zeeb" Cc: freebsd-net@freebsd.org References: <35d2f6fe-c401-4031-a13c-267192d75833@benhutton.com.au> <289r0n75-38sn-12p7-p330-82n56qs5602n@yvfgf.mnoonqbm.arg> <2os57n4q-0451-9413-8s66-s8n17n470s1n@yvfgf.mnoonqbm.arg> Content-Language: en-US From: Ben Hutton In-Reply-To: <2os57n4q-0451-9413-8s66-s8n17n470s1n@yvfgf.mnoonqbm.arg> Content-Type: text/plain; charset=UTF-8; format=flowed Content-Transfer-Encoding: 7bit X-Rspamd-Queue-Id: 4bg7ZS5Kchz3P5k X-Spamd-Bar: ---- X-Rspamd-Pre-Result: action=no action; module=replies; Message is reply to one we originated X-Spamd-Result: default: False [-4.00 / 15.00]; REPLY(-4.00)[]; ASN(0.00)[asn:10143, ipnet:115.70.104.0/21, country:AU] I'm currently using pf. How would you configure pf in this case? Kind regards Ben On 7/13/25 15:17, Bjoern A. Zeeb wrote: > On Sun, 13 Jul 2025, Ben Hutton wrote: > >> How would I do the L2 or L3 NAT with bhyve? > > L3 (IP level) NAT is a normal NAT with ipfw/pf/ipf NAT as one would > normally do. > Depends on you preference of which firewall solution to use. > > You need to set it up on your host system NATting on the WiFi interface. > > /bz >