Date: Mon, 26 Mar 2001 15:03:38 -0800 (PST) From: Archie Cobbs <archie@dellroad.org> To: Luigi Rizzo <luigi@info.iet.unipi.it> Cc: Peter.Blok@inter.NL.net, freebsd-net@FreeBSD.ORG Subject: Re: netgraph ng_bridge and ipfilter Message-ID: <200103262303.f2QN3cA40257@arch20m.dellroad.org> In-Reply-To: <200103261645.SAA71441@info.iet.unipi.it> "from Luigi Rizzo at Mar 26, 2001 06:45:33 pm"
next in thread | previous in thread | raw e-mail | index | archive | help
Luigi Rizzo writes: > > Another question. I saw a posting a while ago, ipfilter doesn't work > > completely when a bridge is created with netgraph. I want to create a > > transparent firewall without NAT. I know OpenBSD has a bridge that works, > > but OpenBSD doesn't have netgraph. > > > > Is this still the case with 4.3-RC > > the above description is a bit confused -- do you need netgraph > for some reason, or what ? > In any case, in 4.3, native bridging now works with ipfw > to build transparent firewalls (without nat). > Don't know if you can do the same with netgraph, i am > sure you will get some reply from the authors Netgraph should be completely orthogonal to the firewall stuff, i.e., they don't interact at all. -Archie __________________________________________________________________________ Archie Cobbs * Packet Design * http://www.packetdesign.com To Unsubscribe: send mail to majordomo@FreeBSD.org with "unsubscribe freebsd-net" in the body of the message
Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?200103262303.f2QN3cA40257>