Subject: Re: ipf and ipv6 with netbsd 1.5.3_ALPHA
To: None <xs@nitric.net>
From: Martti Kuparinen <martti.kuparinen@iki.fi>
List: tech-net
Date: 02/18/2002 09:52:14
On Sun, 17 Feb 2002 xs@nitric.net wrote:

> This appears to only fix it for input traffic though, it doesn't appear
> to filter output traffic. I haven't yet been able to test forwarded traffic.

I don't get this!

Case #1
=======
#block out log from any to any
block in log from any to any

Feb 18 08:49:36 mail3 ipmon[353]: 08:49:36.189310 lo0 @0:1 b fe80:1::210:4bff:feb6:a65 -> fe80:1::210:4bff:feb6:a65 PR icmpv6 len 40 16 icmpv6 icmpv6type(162)/1 IN

Case #2
=======
block out log from any to any
block in log from any to any

Feb 18 08:51:01 mail3 ipmon[353]: 08:51:01.207576 lo0 @0:1 b fe80:1::210:4bff:feb6:a65 -> fe80:1::210:4bff:feb6:a65 PR icmpv6 len 40 16 icmpv6 icmpv6type(162)/1 OUT

So filtering works for me on both directions...

Martti

---
Martti Kuparinen <martti.kuparinen@iki.fi>      NetBSD - No media hype
http://www.iki.fi/~kuparine/                    http://www.netbsd.org/