Chris Smith wrote:
Yes, i know. It copied the rules out of "pfctl -sr" and there it is
shown because its added by default...
>
the difference i see to your construct is you'r tagging packets which
are already tagged. but anyways my construct should work as well, right?
at the moment i do nat and then a pass:
nat log on bge0 inet from 172.16.12.128/27 tag natted -> 88.82.xx.xx
pass log quick from 172.16.12.128/27
if i add the "tagged natted" to the pass rule the rule does never match...
>> the packed is dropped by my default deny rule (the rule does never
| Jon Smirl | 463 kernel developers missing! |
| Nigel Cunningham | Re: [PATCH] Remove process freezer from suspend to RAM pathway |
| Greg KH | Re: [malware-list] [RFC 0/5] [TALPA] Intro to a linux interface for on access scan... |
| Jeff Garzik | Re: Linux 2.6.23-rc9 and a heads-up for the 2.6.24 series.. |
git: | |
| Jarek Poplawski | [PATCH] pkt_sched: Destroy gen estimators under rtnl_lock(). |
| Gerrit Renker | [PATCH 27/37] dccp: Integration of dynamic feature activation - part 2 (server side) |
| Linus Torvalds | Re: [GIT]: Networking |
| Evgeniy Polyakov | Re: [BUG] New Kernel Bugs |
