Skip site navigation (1)Skip section navigation (2)
Date:      Mon, 26 Mar 2001 15:03:38 -0800 (PST)
From:      Archie Cobbs <archie@dellroad.org>
To:        Luigi Rizzo <luigi@info.iet.unipi.it>
Cc:        Peter.Blok@inter.NL.net, freebsd-net@FreeBSD.ORG
Subject:   Re: netgraph ng_bridge and ipfilter
Message-ID:  <200103262303.f2QN3cA40257@arch20m.dellroad.org>
In-Reply-To: <200103261645.SAA71441@info.iet.unipi.it> "from Luigi Rizzo at Mar 26, 2001 06:45:33 pm"

next in thread | previous in thread | raw e-mail | index | archive | help
Luigi Rizzo writes:
> > Another question. I saw a posting a while ago, ipfilter doesn't work
> > completely when a bridge is created with netgraph. I want to create a
> > transparent firewall without NAT. I know OpenBSD has a bridge that works,
> > but OpenBSD doesn't have netgraph.
> > 
> > Is this still the case with 4.3-RC
> 
> the above description is a bit confused -- do you need netgraph
> for some reason, or what ?
> In any case, in 4.3, native bridging now works with ipfw
> to build transparent firewalls (without nat).
> Don't know if you can do the same with netgraph, i am
> sure you will get some reply from the authors

Netgraph should be completely orthogonal to the firewall stuff,
i.e., they don't interact at all.

-Archie

__________________________________________________________________________
Archie Cobbs     *     Packet Design     *     http://www.packetdesign.com

To Unsubscribe: send mail to majordomo@FreeBSD.org
with "unsubscribe freebsd-net" in the body of the message




Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?200103262303.f2QN3cA40257>