Skip site navigation (1)Skip section navigation (2)
Date:      Wed, 4 May 2016 12:23:40 +0200
From:      Kristof Provost <kristof@sigsegv.be>
To:        Alan Somers <asomers@freebsd.org>
Cc:        FreeBSD Net <freebsd-net@freebsd.org>
Subject:   Re: How to use pf with vimage jails?
Message-ID:  <67045371-07B8-4718-8A8B-98E3FBFF994E@sigsegv.be>
In-Reply-To: <CAOtMX2jtxjUxiOv_LqO8Gg5AhXrSBb%2BWatCktx7y03w=st=w3w@mail.gmail.com>
References:  <CAOtMX2jtxjUxiOv_LqO8Gg5AhXrSBb%2BWatCktx7y03w=st=w3w@mail.gmail.com>

next in thread | previous in thread | raw e-mail | index | archive | help


> On 04 May 2016, at 04:55, Alan Somers <asomers@freebsd.org> wrote:
> 
> Is there any documentation on how to run pf on a host, using it to control
> access to vimage jails?  I see that only ipfw can be run from _inside_ of
> the jail, but I'm interested in running pf _outside_ of the jail.  

That’s supported, and really no different from configuring pf otherwise.
Just treat the vimage jails as if they were on different machines, behind your firewall.

Regards,
Kristof




Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?67045371-07B8-4718-8A8B-98E3FBFF994E>