Project

General

Profile

Actions

Feature #12882

closed

Add the option to specify CURLOPT_INTERFACE in pfBlockerNG IPv4/IPv6 lists

Added by Charles Hamilton over 2 years ago. Updated over 1 year ago.

Status:
Resolved
Priority:
Normal
Assignee:
-
Category:
pfBlockerNG
Target version:
-
Start date:
Due date:
% Done:

0%

Estimated time:
Plus Target Version:

Description

Sometimes it is desirable to tell cURL to use a specific interface when downloading IPv4/IPv6 pass/block lists. For example, I run an internal list repository. The server hosting the repository is on a network that is only accessible via IPSec VTI. This can be problematic if the VTI's transit network is a link-local/APIPA subnet, which is the case when using Google Cloud's high-availability VPN. Allowing this option to be specified is basically the "pfBlockerNG version" of the service binding workaround discussed here: https://docs.netgate.com/pfsense/en/latest/vpn/ipsec/access-firewall-over-ipsec.html#ipsec-fwtraffic-vti.


Files

CURLOPT_INTERFACE Example.png (72.9 KB) CURLOPT_INTERFACE Example.png Charles Hamilton, 02/28/2022 01:47 PM
Actions

Also available in: Atom PDF