Skip site navigation (1)Skip section navigation (2)
Date:      Mon, 14 Dec 2015 21:04:58 +0100
From:      murdoch.john@moumantai.de
To:        "freebsd-pf@freebsd.org" <freebsd-pf@freebsd.org>
Subject:   Unable to upload to S3 when pf is activated
Message-ID:  <DFB96E94-2255-4CA2-B1B1-EA0B3230122C@moumantai.de>

next in thread | raw e-mail | index | archive | help
Hi there,

this might sound as a strange question, but when I activate the PF
firewall using a minimal rule set (see below), uploading files to
AWS S3 becomes impossible.

The boto library throws a =E2=80=98broken pipe=E2=80=99 exception. But =
if I deactivate
the firewall, everything works fine.

> uname -a
FreeBSD ip-10-193-173-48 10.2-RELEASE-p7 FreeBSD 10.2-RELEASE-p7

> cat /etc/pf.conf
scrub all
block return-icmp log (all) all
pass log (all) all modulate state

> aws =E2=80=94version
aws-cli/1.9.12 Python/2.7.10 FreeBSD/10.2-RELEASE-p7 botocore/1.3.12

There are no =E2=80=98block=E2=80=99 entries when watching pflog0.
https://gist.github.com/JoergFiedler/b284af0be47983ac867b

I am lost. Anyone any ideas.

Thanks a lot.
John=



Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?DFB96E94-2255-4CA2-B1B1-EA0B3230122C>