pf firewall packet size

2021-03-11 Thread da...@hajes.org
Hi guys, I am trying to find out way how to port my Linux netfilter into OpenBSD pf. I want to prioritize small new SYN connection SYN/ACK, ACK. In Linux I simply set a packet size 0-128 bytes that covers usual 3-way handshake. This simple rule makes all faster. There seems to be no "packet

pf firewall packet size

2021-03-11 Thread da...@hajes.org
Hi guys, I am trying to find out way how to port my Linux netfilter into OpenBSD pf. I want to prioritize small new SYN connection SYN/ACK, ACK. In Linux I simply set a packet size 0-128 bytes that covers usual 3-way handshake. This simple rule makes all faster. There seems to be no "packet

Re: pf firewall bridge0 vether0 blocks DHCP for bridge interfaces connected to Windows

2021-03-11 Thread da...@hajes.org
2021 08:49, Claudio Jeker wrote: On Wed, Mar 10, 2021 at 08:40:55PM +0100, da...@hajes.org wrote: Hi, I did set up OpenBSD router/firewall on PC Engines APU4d4 box. First interface is WAN that connects to Internet. Remaining three interfaces are bridged with bridge0 via vether0. firewall doesn't

pf firewall bridge0 vether0 blocks DHCP for bridge interfaces connected to Windows

2021-03-10 Thread da...@hajes.org
Hi, I did set up OpenBSD router/firewall on PC Engines APU4d4 box. First interface is WAN that connects to Internet. Remaining three interfaces are bridged with bridge0 via vether0. firewall doesn't block LAN/bridge traffic on vether0. DHCPD runs on bridge. Two Linux hosts (connected to em2