Unix Technical Forum

carp in PF interface context.

This is a discussion on carp in PF interface context. within the lucky.openbsd.misc forums, part of the OpenBSD category; --> I am playing with openbsd PF, and i read the text below: ( http://www.countersiege.com/doc/pfsync-carp/ ) "When writing the rest ...


Go Back   Unix Technical Forum > Unix Operating Systems > OpenBSD > lucky.openbsd.misc

FAQ Members List Calendar Search Today's Posts Mark Forums Read
  #1 (permalink)  
Old 02-18-2008, 06:07 AM
Gustavo Rios
 
Posts: n/a
Default carp in PF interface context.

I am playing with openbsd PF, and i read the text below:
(http://www.countersiege.com/doc/pfsync-carp/)

"When writing the rest of the pf ruleset, it is important to keep in
mind that from pf's perspective, all traffic comes from the physical
interface, even if it is routed through the carp address. However, the
address is of course associated with the carp interface. Therefore, in
the interface context, such as "pass in on $extif ...", $extif would
be the physical interface, but in the context of "from $foo" or "to
$foo", the carp interface should be used, as it's being meant in the
address context."

Why the carp "interface" cannot be used in context of the interface?

Thanks for your time and cooperation.

Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!
Reply With Quote
Reply


Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

vB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are On
Forum Jump


All times are GMT. The time now is 10:09 AM.


Powered by vBulletin® Version 3.6.5
Copyright ©2000 - 2008, Jelsoft Enterprises Ltd.
SEO by vBSEO 3.2.0
www.UnixAdminTalk.com