OSEC

Neohapsis is currently accepting applications for employment. For more information, please visit our website www.neohapsis.com or email hr@neohapsis.com
 
Re: Filtering jail IP traffic

From: Attila Nagy (brafsn.hu)
Date: Fri Aug 26 2005 - 09:41:13 CDT


Anders Nordby wrote:
> IP traffic from one jail to another jail, arrives on destination jail on
> lo0 having the destination jails IP as source IP. Why not the source
> jail's IP address?
> How can I filter traffic from one jail to another, using ipfw of ipf?
AFAIK (at least with pf), you can't really filter on loopback
interfaces. Last time I tried, I could not filter on TCP or UDP ports,
filtering from and to IP and protocol worked.

--
Attila Nagy e-mail: Attila.Nagyfsn.hu
Adopt a directory on our free software phone work: +361 371 3536
server! http://www.fsn.hu/?f=brick cell.: +3630 306 6758
_______________________________________________
freebsd-securityfreebsd.org mailing list
http://lists.freebsd.org/mailman/listinfo/freebsd-security
To unsubscribe, send any mail to "freebsd-security-unsubscribefreebsd.org"