View Single Post
  #1   (View Single Post)  
Old 25th May 2010
fbroce fbroce is offline
Port Guard
 
Join Date: Oct 2009
Posts: 11
Default OpenBSD 4.7 pf and traceroute

I have 4.7 running as a home cable router on two boxes (one is a spare). I have the new pf format working with the exception of mtr or traceroute.

I can get mtr to work however it just shows the first and last hop. I think the problem is related to the scrub statement:

match log on $ext_if all scrub (random-id min-ttl 254 set-tos lowdelay reassemble tcp max-mss 1472 )

shows only the destination:


traceroute to daemonforums.org (94.142.245.224), 64 hops max, 40 byte packets
1 daemonforums.org (94.142.245.224) 136.681 ms 138.460 ms 136.798 ms


If I use a simple
match out all scrub (no-df)

traceroute works on the router box only and gives ??? on other connected boxes.

Any ideas?
Reply With Quote