View Single Post
  #2   (View Single Post)  
Old 5th June 2009
J65nko J65nko is offline
Join Date: May 2008
Location: Budel - the Netherlands
Posts: 3,505

Have you seen ?

To check whether pf is blocking, use a default policy of:
 block log all
This will make blocked packets appear on the pflog0 device.
You can see these packets by using
tcpdump -eni pflog0
a console on the VPN/firewall box.
You don't need to be a genius to debug a pf.conf firewall ruleset, you just need the guts to run tcpdump
Reply With Quote