RC Service Order

Nathan England nathan at paysonlinux.org
Wed Sep 16 20:30:57 MST 2009


Craig White wrote:
> I don't recall ever creating firewall rules for the tun or tap
> interfaces.
>
> Craig
>
> On Wed, 2009-09-16 at 20:18 -0700, Eric Cope wrote:
>   
>> That was my concern. However, PF fails to start properly because the
>> VPN TUN interface isn't established yet. Have you had issues like this
>> on other systems?
>> Eric
>>     

In my head, it seems that the network interfaces in general may not be 
up yet but the PF rules are loading okay. That means the device is 
found, though it has not been given instruction. Is it possible the 
modules for the tun and tap devices have not been loaded yet so the PF 
is failing because the devices do not exist yet?

Rather than moving anything around, can you add a line to your rc conf 
file to load the modules before the PF starts???

modprobe tun

Is there a module for tap? I don't recall off the top of my head.

nathan


More information about the PLUG-discuss mailing list