Re: VNET

2012-06-20 Thread Sami Halabi
Thank you. I want to use vnet jail for a specific subnet that I need to seperate from the system. so basicly i create a vlan + a bridged interface to the public. these two (vlan+bridged interface- epair0a) will in in the vnet jail, so I can do NAT only for that vlan going out. This is the idea, as

Re: VNET

2012-06-20 Thread Alexander V. Chernikov
On 19.06.2012 12:56, Sami Halabi wrote: Hi, I want to ask aout VNET jails, i read somehwre that I'm able to run IPFW, but not PF firewall in a cnet jail. is that correct? i want a vnet jail basicly for nat, so natd with ipfw + ipdivert is my 1) You can do nat without vnet. 2) ipfw nat is curre

Re: kern/169206: [ipfw] ipfw does not flush entries in table

2012-06-20 Thread Alexander V. Chernikov
The following reply was made to PR kern/169206; it has been noted by GNATS. From: "Alexander V. Chernikov" To: bug-follo...@freebsd.org, pi...@pixel.org.pl Cc: Subject: Re: kern/169206: [ipfw] ipfw does not flush entries in table Date: Wed, 20 Jun 2012 18:29:18 +0400 Is it possible for you to