Skip site navigation (1)Skip section navigation (2)
Date:      Tue, 28 Dec 2021 21:36:21 +0100
From:      =?UTF-8?Q?Morgan_Wesstr=c3=b6m?= <freebsd-database@pp.dyndns.biz>
To:        questions@freebsd.org
Subject:   Re: PF and tun1
Message-ID:  <0e1aac95-7286-b87c-38eb-9f4f2f2af435@pp.dyndns.biz>
In-Reply-To: <CABMOuVegdDcuxC9QnWusO7T6ysDvRyrqcQsvOS7XEAoftmQc2A@mail.gmail.com>
References:  <CABMOuVfxHtXzR0EC7P1h1KPYjpyxX9FnTyexLW4sThDpaE8PfA@mail.gmail.com> <5f2cca65-daab-989c-5fd0-6a5373f5bd56@pp.dyndns.biz> <CABMOuVer0Dy1D0sMAjTJCFee%2B9Lpjo8899c6KKOZyHtwZCh%2Bgg@mail.gmail.com> <CAOyJeZTLdocx0tKujMU0=CGnDVCQT_Lj9MwE%2BYKJEpLk1Ft4uA@mail.gmail.com> <CABMOuVegdDcuxC9QnWusO7T6ysDvRyrqcQsvOS7XEAoftmQc2A@mail.gmail.com>

index | next in thread | previous in thread | raw e-mail

On 2021-12-28 20:49, Alex Thomas wrote:
> After every change I did a pfctl -f /etc/pf.conf.
> 

Then you need to start with the basics. Add the "log" directive to every rule 
and start monitoring your pflog device to see what rule is blocking the traffic 
you want to send over the tunnel.

# tcpdump -i pflog0 -nve

Paste an example of the blocked traffic here as well as the output of

# pfctl -vvsr

/Morgan


help

Want to link to this message? Use this
URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?0e1aac95-7286-b87c-38eb-9f4f2f2af435>