From owner-freebsd-questions@FreeBSD.ORG Wed Aug 11 09:30:24 2010 Return-Path: Delivered-To: freebsd-questions@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2001:4f8:fff6::34]) by hub.freebsd.org (Postfix) with ESMTP id 692E2106566B for ; Wed, 11 Aug 2010 09:30:24 +0000 (UTC) (envelope-from cameron@cskk.homeip.net) Received: from harvey.boardofstudies.nsw.edu.au (mail2.rack1.boardofstudies.nsw.edu.au [202.125.174.133]) by mx1.freebsd.org (Postfix) with ESMTP id 2823C8FC19 for ; Wed, 11 Aug 2010 09:30:23 +0000 (UTC) Received: from cskk.homeip.net (localhost.localdomain [127.0.0.1]) by harvey.boardofstudies.nsw.edu.au (Postfix) with ESMTP id E4D264D3223; Wed, 11 Aug 2010 19:30:19 +1000 (EST) Received: by janus.cskk.homeip.net (Postfix, from userid 1000) id C54E110040AE0; Wed, 11 Aug 2010 19:30:19 +1000 (EST) Date: Wed, 11 Aug 2010 19:30:19 +1000 From: Cameron Simpson To: Rob Farmer Message-ID: <20100811093019.GA18702@cskk.homeip.net> MIME-Version: 1.0 Content-Type: text/plain; charset=utf-8 Content-Disposition: inline Content-Transfer-Encoding: 8bit In-Reply-To: User-Agent: Mutt/1.5.20 (2009-06-14) References: Cc: freebsd-questions@freebsd.org Subject: Re: trouble building FreeBSD 8.1 amd64 kernel with pfsync support X-BeenThere: freebsd-questions@freebsd.org X-Mailman-Version: 2.1.5 Precedence: list List-Id: User questions List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Wed, 11 Aug 2010 09:30:24 -0000 On 11Aug2010 01:36, Rob Farmer wrote: | On Wed, Aug 11, 2010 at 12:20 AM, Cameron Simpson wrote: | > I'm trying to build a kernel for a pair of firewalls which will be using | > CARP and pfsync for redundancy. Since I'm new to FreeBSD the config is | > based on the GENERIC config, thus: | > | >  include GENERIC | >  ident NEW_FIREWALL | >  device carp | >  ##device pfsync | > | > and issuing the build like this: | > | >  # cd /usr/src | >  # time make buildkernel KERNCONF=NEW_FIREWALL && echo YES | > | > With the config above (CARP but no pfsync) it builds just fine | > and boots and runs happily; I've got CARP configured. | > | > If I uncomment the "devic pfsync" the build aborts at link time ending thus: | | Do you also have a "device pf" line? I think that is a prereq for | pfsync. You may also need "device pflog" - I'm not sure because I've | always just added them all. Hmm. [greps GENERIC...] No, I don't. I figured that since pfctl was working I was ok there, but I think it loads the module dynamicly. I can see that if pfsync needs a static build it may rely on pf and pflog being static also. I'll try that now and report. Thanks, -- Cameron Simpson DoD#743 http://www.cskk.ezoshosting.com/cs/ Trust the computer industry to shorten Year 2000 to Y2K. It was this thinking that caused the problem in the first place. - Mark Ovens