From owner-freebsd-pf@FreeBSD.ORG Fri Jan 27 13:54:42 2006 Return-Path: X-Original-To: freebsd-pf@freebsd.org Delivered-To: freebsd-pf@freebsd.org Received: from mx1.FreeBSD.org (mx1.freebsd.org [216.136.204.125]) by hub.freebsd.org (Postfix) with ESMTP id 9590216A420 for ; Fri, 27 Jan 2006 13:54:42 +0000 (GMT) (envelope-from hdemir@metu.edu.tr) Received: from kale.cc.metu.edu.tr (kale.general.services.metu.edu.tr [144.122.144.157]) by mx1.FreeBSD.org (Postfix) with ESMTP id C8CD643D45 for ; Fri, 27 Jan 2006 13:54:40 +0000 (GMT) (envelope-from hdemir@metu.edu.tr) Received: from simena.user.services.metu.edu.tr (simena.user.services.metu.edu.tr [144.122.144.15]) by kale.cc.metu.edu.tr (8.12.11/8.12.11) with ESMTP id k0RDsaAA030738 for ; Fri, 27 Jan 2006 15:54:36 +0200 Received: (from hdemir@localhost) by simena.user.services.metu.edu.tr (8.13.5/8.13.5/Submit) id k0RDsZ6k852128 for freebsd-pf@freebsd.org; Fri, 27 Jan 2006 15:54:35 +0200 Date: Fri, 27 Jan 2006 15:54:34 +0200 From: husnu demir To: freebsd-pf@freebsd.org Message-ID: <20060127135434.GA1073182@metu.edu.tr> Mime-Version: 1.0 Content-Type: text/plain; charset=us-ascii Content-Disposition: inline User-Agent: Mutt/1.5.10i X-Virus-Scanned: ClamAV 0.88/1253/Fri Jan 27 12:10:20 2006 on kale.cc.metu.edu.tr X-Virus-Status: Clean Subject: pf and VLAN support. X-BeenThere: freebsd-pf@freebsd.org X-Mailman-Version: 2.1.5 Precedence: list List-Id: "Technical discussion and general questions about packet filter \(pf\)" List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Fri, 27 Jan 2006 13:54:42 -0000 Hi, Last week I tried to use PF+ALTQ+VLAN combination and found out that ALTQ doesnot support VLAN. Then after some searching found out that giving ALTQ support on the root device and queue'ing to the VLAN device is sufficient to use. But I could not find any reference for that info, either pf.conf or ALTQ manual. man altq says that " The tun(4) and ng_iface(4) pseudo drivers also do support ALTQ" but does not mention about the vlan. Is this solution correct? If it is, whay anybody did not reference to that INFO. Thanks. .... altq on bge0 cbq bandwidth 0.05Mb queue { icmp } # BGE0 is the main interface for VLAN1. queue icmp_internal cbq(default) .... pass in quick on vlan1 inet proto icmp from xxxxxxxx to any \ icmp-type $icmp_tips keep state (max 1000) queue icmp_internal # queue is used for the VLAN1 interface. ....