Date: Thu, 2 Aug 2012 11:10:12 GMT From: HASHI Hiroaki <hashiz@meridiani.jp> To: freebsd-net@FreeBSD.org Subject: Re: kern/169620: [ng] [pf] ng_l2tp incoming packet bypass pf firewall Message-ID: <201208021110.q72BACuk031097@freefall.freebsd.org>
next in thread | raw e-mail | index | archive | help
The following reply was made to PR kern/169620; it has been noted by GNATS. From: HASHI Hiroaki <hashiz@meridiani.jp> To: longwitz@incore.de Cc: bug-followup@freebsd.org Subject: Re: kern/169620: [ng] [pf] ng_l2tp incoming packet bypass pf firewall Date: Thu, 02 Aug 2012 19:20:48 +0900 (JST) In "Re: kern/169620: [ng] [pf] ng_l2tp incoming packet bypass pf firewall" at Thu, 02 Aug 2012 10:39:20 +0200 Andreas Longwitz <longwitz@incore.de> wrote: > Hi, >> PF firewall does not examine incomming packet on ng_l2tp interface. > > If your incoming packets are handled by IPSec before ng_l2tp your > problem is explained in Yes, handled by IPSec. > > lists.freebsd.org/pipermail/freebsd-net/2012-January/031161.html I will try it. Thanks.
Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?201208021110.q72BACuk031097>