On 30 May 2017, at 16:17, Kajetan Staszkiewicz wrote:

Hello,

I have a setup where FreeBSD-based routers serving datacenters are connected via gif tunnels which are additionally encrypted using transport mode IPsec. Each router runs pf and provides firewalling between multiple VLANs. Tunnel
interfaces were always trusted, though.
..

Is there any option to check from userspace if the gif interface has pf
attached in netpfil hook for incoming traffic? Running tcpdump on gif
interface correctly shows incoming icmp echo request.


What you want to read is
        man 4 enc
I think.

/bz
_______________________________________________
freebsd-pf@freebsd.org mailing list
https://lists.freebsd.org/mailman/listinfo/freebsd-pf
To unsubscribe, send any mail to "freebsd-pf-unsubscr...@freebsd.org"

Reply via email to