Jailed/sandboxed/chrooted applications

Adlesshaven adlesshaven at embarqmail.com
Fri Jan 2 21:45:57 UTC 2009


Hans Schnehl wrote:
> please see:
> http://archives.seul.org/or/talk/Oct-2007/msg00028.html
> handling a similar approach.
>   
Oh... So rdr rules dont apply to lo0. No wonder the Wiki instructions 
are so complicated.
I am not very experienced at PF... if anyone could help me understand 
this workaround
better it would be very appreciated!

route-to sends it to the lo1 interface
on the lo1 interface the IP it is heading to is changed to 127.0.0.1 
port 9040
some other rules to make sure nothing else gets out

Is that it? It still seems very confusing.



More information about the tor-talk mailing list