ipfw amd bridge

Olivier Nicole on at cs.ait.ac.th
Sun Mar 15 00:36:55 PDT 2009


Thanks,

> > I remember reqading in the past (4.x) that on a machine with bridged
> > interfaces, only layer 2 rules of ipfw would apply.
> 
> not quite.
> there are rules that do not work when called from a layer two
> point. e.g. divert does not work, nor does 'fwd' (without patches).

And what would be the patches (if any exists)?

> note if_bridge and bridge are different and may have
> behavioral differences in this regard.

I think it will be if_bridge (as bridge is obsolete).

Bests,

Olivier

 


More information about the freebsd-ipfw mailing list