Monday, April 14, 2025

Re: pf.conf: definition of macro for multiple interfaces

On Mon, Apr 14, 2025 at 01:14:23PM +0200, Peter N. M. Hansteen wrote:
> Just a thought:
>
> if the reason you are setting up two network interfaces on a system to connect to the same
> subnet is to use as much as possible of the bandwidth offered by the interfaces, would
> it not make more sense to configure them as parts of a trunk(4)?

No, I believe it is still the "firewall in the middle of a subnet"
footgun design, from the "group egress" thread sometime ago.

>
> --
> Peter N. M. Hansteen, member of the first RFC 1149 implementation team
> https://bsdly.blogspot.com/ https://www.bsdly.net/ https://www.nuug.no/
> "Remember to set the evil bit on all malicious network traffic"
> delilah spamd[29949]: 85.152.224.147: disconnected after 42673 seconds.
>

--

No comments:

Post a Comment