[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]
Re: Is there anything weird I should know about using ipfw on alias addresses?
- To: Brett Davidson <brett_(_at_)_net24_(_dot_)_co_(_dot_)_nz>
- Subject: Re: Is there anything weird I should know about using ipfw on alias addresses?
- From: Ian Smith <smithi_(_at_)_nimnet_(_dot_)_asn_(_dot_)_au>
- Date: Mon, 1 Dec 2008 23:51:40 +1100 (EST)
- Cc: freebsd-questions_(_at_)_freebsd_(_dot_)_org
On Mon, 01 Dec 2008 16:52:12 +1300 Brett Davidson <brett_(_at_)_net24_(_dot_)_co_(_dot_)_nz> wrote:
> ifconfig shows the alias addresses correctly bound.
> Creating an ipfw rule and testing it from the command line works
> (connects out from master address, not alias)
>
> From website on alias address, the firewall blocks the packets.
>
> The weird thing is that it tags them (in the security log) as coming
> from the master address (not the alias) out the correct interface. In a
> normal world that would mean the packet would match!!!!!
>
> What's goin' on here Willis?
Difficult to tell without seeing a) ifconfig b) netstat -rn c) at least
the relevant firewall rule/s and d) log entries that illustrate your
problem. Obscure sensitive information by all means, but otherwise
pretend we haven't the slightest clue how your system is configured :)
cheers, Ian
_______________________________________________
freebsd-questions_(_at_)_freebsd_(_dot_)_org mailing list
http://lists.freebsd.org/mailman/listinfo/freebsd-questions
To unsubscribe, send any mail to "freebsd-questions-unsubscribe_(_at_)_freebsd_(_dot_)_org"
Visit your host, monkey.org