Skip site navigation (1)Skip section navigation (2)
Date:      Tue, 17 Apr 2007 13:00:29 -0500
From:      "Bill Marquette" <bill.marquette@gmail.com>
To:        freebsd-net@freebsd.org
Subject:   Fwd: ng_tag and pf?
Message-ID:  <55e8a96c0704171100v2222eed4g606a8f5f25f2c06b@mail.gmail.com>
In-Reply-To: <55e8a96c0704171025n4a3a8893s912886f6cfd7b36a@mail.gmail.com>
References:  <55e8a96c0704171025n4a3a8893s912886f6cfd7b36a@mail.gmail.com>

next in thread | previous in thread | raw e-mail | index | archive | help
Forwarding to -net to get a larger audience.  Any help would be
appreciated.  Thanks

--Bill

---------- Forwarded message ----------
From: Bill Marquette <bill.marquette@gmail.com>
Date: Apr 17, 2007 12:25 PM
Subject: ng_tag and pf?
To: "freebsd-pf@freebsd.org" <freebsd-pf@freebsd.org>


Is it possible to use ng_tag in conjunction with pf?  I have a setup
in OpenBSD currently where I use the bridge interface to apply a tag
to a packet based on the mac address so that when pf gets the packet
it can apply a reply-to rule to it to keep traffic flows symmetric
(the upstream device(s) also keep state, so the reply path has to be
the same).  I'm looking to duplicate this in FreeBSD with pf and I
think ng_tag and maybe ng_bpf can make this happen, but I'm at a bit
of a loss as to how at this point.  Any pointers or at least a "yes
it's absolutely possible, figure it out and let us know the exact
config" answer would be very much appreciated.  Thanks

--Bill



Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?55e8a96c0704171100v2222eed4g606a8f5f25f2c06b>