pf problem

florkle <[email protected]> Sun, 15 Sep 2002 14:00:51 -0700 (PDT)
Newsgroups gmane.os.openbsd.ipv6
Message-ID <[email protected]>
I have a newly applied for tunnel which I know to be
activated and if I drop the pf rules on he 3.1
-RELEASE firewall I can ping6 it successfully.

I have a line which blocks everything:

@9 block in log on ep0 inet all 

which catches all my ip6 traffic even though I added
these lines:

@12 pass out quick on ep0 inet6 all 
@13 pass in quick on ep0 inet6 all 

I also placed these /before/ the 9 rule, which the
same result ( I track the blocks via tcpdump -i pflog0
). 

I even tried allowing the ip6 tunnel endpoint (which I
must allow to ping6 me to keep the tunnel up) in via a
specific line allowing it to pass traffic to me, but
still it get's block'd

Can someone provide me with ip6 rules that work
for them?

-F
Yahoo! News - Today's headlines
http://news.yahoo.com