Skip site navigation (1)Skip section navigation (2)
Date:      Tue, 29 Jul 2008 03:10:52 -0700
From:      Jeremy Chadwick <koitsu@FreeBSD.org>
To:        Nejc ?koberne <nejc@skoberne.net>
Cc:        freebsd-pf@freebsd.org
Subject:   Re: pf randomly blocks specific packets?
Message-ID:  <20080729101052.GA65160@eos.sc1.parodius.com>
In-Reply-To: <488EE046.4010602@skoberne.net>
References:  <488EE046.4010602@skoberne.net>

next in thread | previous in thread | raw e-mail | index | archive | help
On Tue, Jul 29, 2008 at 11:17:58AM +0200, Nejc ?koberne wrote:
> I have a FreeBSD 7.0 system with jails (and services in them). In one of the jails there
> is an Apache server, which also runs on the host system (and forwards traffic using
> mod_proxy to the jailed Apache).
>
> Everything works as expected, I only have problems with pf which seems to block certain
> packets randomly (not all of them).
>
> {snip}

Does removing "reassemble tcp" from your scrub rules fix anything?

I cannot comment on the rest of the ruleset.

-- 
| Jeremy Chadwick                                jdc at parodius.com |
| Parodius Networking                       http://www.parodius.com/ |
| UNIX Systems Administrator                  Mountain View, CA, USA |
| Making life hard for others since 1977.              PGP: 4BD6C0CB |




Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?20080729101052.GA65160>