Firewalling jails and lo0

Niklaas Baudet von Gersdorff stdin at niklaas.eu
Sun Aug 7 15:23:53 UTC 2016


Ernie Luzar [2016-08-07 10:20 -0400] :

> I believe the loopback interface lo1 needs 127.0.0.0/8 ip address to enable
> loopback functionally, and the ip address has to be a different sub-net. IE
> 127.0.10.1 for lo1 while the hosts lo0 uses 127.0.0.1

Aha. So once I assigned those traffic from/to jails should go
through lo1 solely?

    Niklaas


More information about the freebsd-pf mailing list