[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]
ip.forwarding and pf
- To: misc_(_at_)_openbsd_(_dot_)_org
- Subject: ip.forwarding and pf
- From: TAMONE Francois - System Engineer <Francois_(_dot_)_Tamone_(_at_)_eig6_(_dot_)_unige_(_dot_)_ch>
- Date: Mon, 15 Nov 2004 17:22:40 +0100 (MET)
It is not clear after several readings supposed to be central to pf
whether ip.forwarding must be set to 1 or not with PF. Now I am confused.
Also in the (excellent!) book from Jacek Artymiak "Builing Firewall with
OpenBSD and PF":
if pf does bridging or NAT set ip.forwarding to 1
But I do not do bridging and my pf.conf does not do NAT... So does it mean
I have to set ip.forwarding to 0 ? Is pf routing alone ?
I remember the day of "checkpoint" where ip.forwarding wrongly set to 1
would bypass firewall rules.
Is forwarding like routing ? if so why use it in bridging ? who ? what ?
Visit your host, monkey.org