Skip site navigation (1)Skip section navigation (2)
Date:      Wed, 03 Feb 2021 06:11:52 +0000
From:      "R. Tyler Croy" <rtyler@brokenco.de>
To:        freebsd-pf@freebsd.org
Subject:   pflog0 showing up in my vnet jails
Message-ID:  <20210203061148.4fcg6ml6yj7k6aqi@grape>

next in thread | raw e-mail | index | archive | help
This is an OpenPGP/MIME signed message (RFC 4880 and 3156)
-----------------------551f6aaff0d29bba0bd8a22f006fd29a
Content-Disposition: inline
Content-Transfer-Encoding: quoted-printable
Content-Type: text/plain; charset=us-ascii
Date: Tue, 2 Feb 2021 22:11:48 -0800
From: "R. Tyler Croy" <rtyler@brokenco.de>
Message-Id: <20210203061148.4fcg6ml6yj7k6aqi@grape>
Mime-Version: 1.0
Subject: pflog0 showing up in my vnet jails
To: freebsd-pf@freebsd.org
User-Agent: NeoMutt/20201127

I noticed this evening that pflog0 is propagated into my vnet-based jails
(12.2-RELEASE) and I'm somewhat surprised to see it there.

My host's /etc/rc.conf simply has `pflog_enable=3D"YES"`, so nothing too
esoteric. My /etc/jail.conf doesn't do anything with pflog0 for the jails, =
so
the fact that it shows up _feels_ like a bug, from within a jail:

    # ifconfig
    lo0: flags=3D8049<UP,LOOPBACK,RUNNING,MULTICAST> metric 0 mtu 16384
            options=3D680003<RXCSUM,TXCSUM,LINKSTATE,RXCSUM_IPV6,TXCSUM_IPV=
6>
            inet6 ::1 prefixlen 128
            inet6 fe80::1%lo0 prefixlen 64 scopeid 0x1
            inet 127.0.0.1 netmask 0xff000000
            groups: lo
            nd6 options=3D21<PERFORMNUD,AUTO_LINKLOCAL>
    pflog0: flags=3D0<> metric 0 mtu 33160
            groups: pflog
    epair2b: flags=3D8843<UP,BROADCAST,RUNNING,SIMPLEX,MULTICAST> metric 0 =
mtu 1500
            options=3D8<VLAN_MTU>
            ether 02:c4:52:c8:47:0b
            inet 10.0.1.4 netmask 0xffffff00 broadcast 10.0.1.255
            groups: epair
            media: Ethernet 10Gbase-T (10Gbase-T <full-duplex>)
            status: active
            nd6 options=3D29<PERFORMNUD,IFDISABLED,AUTO_LINKLOCAL>
    #=20

Fortunately, when I tcpdump that device from within the jail, it has none o=
f
the host pflog0's entries being reported.


Regardless, should I file this as a bug?

Cheers
--
GitHub:  https://github.com/rtyler

GPG Key ID: 0F2298A980EE31ACCA0A7825E5C92681BEF6CEA2

-----------------------551f6aaff0d29bba0bd8a22f006fd29a
Content-Type: application/pgp-signature; name="signature.asc"
Content-Description: OpenPGP digital signature
Content-Disposition: attachment; filename="signature.asc"

-----BEGIN PGP SIGNATURE-----
Version: ProtonMail
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=JFoY
-----END PGP SIGNATURE-----


-----------------------551f6aaff0d29bba0bd8a22f006fd29a--




Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?20210203061148.4fcg6ml6yj7k6aqi>