, 5 tweets, 2 min read
My Authors
Read all threads
I’m trying to do a #FreeBSD vnet jail using a different subnet than the host. Routing seems to be the issue. I think the host needs an IP address in the jails subnet to act as the gateway. Correct?

The vnet needs to be attached to **not** em0.
I thought about creating tap0, putting 192.168.0.1 on that, and attaching it to bridge0 instead of em0.
We created em1 on the host, configured as: ifconfig em1 inet 192.168.100.1/24

The host can now ping the jail, and the jail can ping the host.

The problem: we can't do NAT.

tcpdump shows no traffic on em1 leaving the jail.

Is that because bridge0 members are em0, em1, vnet0 ?
e.g. host google.com in the jail produces traffic on em0 and vnet0... we just don't know how/where to do the NAT in this case.
I think my original assertion that bridge0 be not connected to em0 is wrong. However, this is iocage, and it is somehow associating everything with bridge0.

Let's try vanilla jails.
Missing some Tweet in this thread? You can try to force a refresh.

Enjoying this thread?

Keep Current with Dan Langille

Profile picture

Stay in touch and get notified when new unrolls are available from this author!

Read all threads

This Thread may be Removed Anytime!

Twitter may remove this content at anytime, convert it as a PDF, save and print for later use!

Try unrolling a thread yourself!

how to unroll video

1) Follow Thread Reader App on Twitter so you can easily mention us!

2) Go to a Twitter thread (series of Tweets by the same owner) and mention us with a keyword "unroll" @threadreaderapp unroll

You can practice here first or read more on our help page!

Follow Us on Twitter!

Did Thread Reader help you today?

Support us! We are indie developers!


This site is made by just three indie developers on a laptop doing marketing, support and development! Read more about the story.

Become a Premium Member ($3.00/month or $30.00/year) and get exclusive features!

Become Premium

Too expensive? Make a small donation by buying us coffee ($5) or help with server cost ($10)

Donate via Paypal Become our Patreon

Thank you for your support!