> I'm not sure now, but it seems that packets routed in Haproxy are > somehow protected from dumping: > root@owncloud:~ # tcpdump -i em1 -vv port 80 > tcpdump: listening on em1, link-type EN10MB (Ethernet), capture size > 10 bytes > ^C > 0 packets captured > 3774 packets received by filter > 0 packets dropped by kernel > > I do it directly in the jail and have /dev/bpf enabled.
Is em1 the correct interface? Maybe it traverses loopback (even though the ip addresses are from em0 or em1)? Lukas