pf synproxy

Denny Lin dennylin93 at hs.ntnu.edu.tw
Mon Jul 26 14:21:29 UTC 2010


On Mon, Jul 26, 2010 at 05:26:21AM -0700, Justin wrote:
>    Hello all - I've tried searching the list but it seems something is 
> broken and I'm getting 500 errors. Alas,
> 
>  Is there something unique about using synproxy in a gateway style 
> firewall that isn't outlined in the PF manuals? Here's the scenario:
> 
> Internet -> em0 | pf rules | em1 -> target host.

Synproxy does not work when on bridges.

>From pf.conf(5):
Rules with synproxy will not work if pf(4) operates on a if_bridge(4).

-- 
Denny Lin


More information about the freebsd-pf mailing list