From owner-freebsd-net@FreeBSD.ORG Wed Jul 28 21:23:47 2004 Return-Path: Delivered-To: freebsd-net@freebsd.org Received: from mx1.FreeBSD.org (mx1.freebsd.org [216.136.204.125]) by hub.freebsd.org (Postfix) with ESMTP id 10A8616A4CE for ; Wed, 28 Jul 2004 21:23:47 +0000 (GMT) Received: from mailhost.schluting.com (schluting.com [131.252.214.57]) by mx1.FreeBSD.org (Postfix) with ESMTP id E554843D6E for ; Wed, 28 Jul 2004 21:23:46 +0000 (GMT) (envelope-from charlie@schluting.com) Received: from localhost (localhost [127.0.0.1]) by mailhost.schluting.com (Postfix) with ESMTP id 15DF5217E for ; Wed, 28 Jul 2004 14:23:44 -0700 (PDT) Received: from mailhost.schluting.com ([127.0.0.1]) by localhost (schluting.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id 95301-09 for ; Wed, 28 Jul 2004 14:23:34 -0700 (PDT) Received: from [131.252.209.122] (smelly.cat.pdx.edu [131.252.209.122]) (using TLSv1 with cipher DHE-RSA-AES256-SHA (256/256 bits)) (No client certificate requested) by mailhost.schluting.com (Postfix) with ESMTP id 8473420C0 for ; Wed, 28 Jul 2004 14:23:34 -0700 (PDT) Message-ID: <41081955.5090204@schluting.com> Date: Wed, 28 Jul 2004 14:23:33 -0700 From: Charlie Schluting User-Agent: Mozilla Thunderbird 0.6 (X11/20040519) X-Accept-Language: en-us, en MIME-Version: 1.0 To: freebsd-net@freebsd.org Content-Type: text/plain; charset=us-ascii; format=flowed Content-Transfer-Encoding: 7bit X-Virus-Scanned: by your mom at schluting.com Subject: packet order, ipf or ipfw X-BeenThere: freebsd-net@freebsd.org X-Mailman-Version: 2.1.1 Precedence: list List-Id: Networking and TCP/IP with FreeBSD List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Wed, 28 Jul 2004 21:23:47 -0000 Hello.. I'm running ipf because I like it ...but now I need to use ipfw's pipe feature. I was thinking that I could just run both, and keep all my rules in ipf, then in ipfw: limit bandwidth for a few vlans, then allow all. It didn't work (no rate-limiting happened).. and I'm thinking that ipf is passing the packets and bypassing ipfw? Or something.. So, what is the order, if I'm running ipf AND ipfw at the same time? Will it work at all in this manner? Thanks! -Charlie