[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

ip.forwarding and pf



Hi,

It is not clear after several readings supposed to be central to pf
whether ip.forwarding must be set to 1 or not with PF. Now I am confused.

Also in the (excellent!) book from Jacek Artymiak "Builing Firewall with
OpenBSD and PF":

	if pf does bridging or NAT set ip.forwarding to 1

But I do not do bridging and my pf.conf does not do NAT... So does it mean
I have to set ip.forwarding to 0 ? Is pf routing alone ?

I remember the day of "checkpoint" where ip.forwarding wrongly set to 1
would bypass firewall rules.

Is forwarding like routing ? if so why use it in bridging ? who ? what ?
where?...

Thanks



Visit your host, monkey.org