Date: Mon, 30 May 2005 12:29:17 +0200 From: =?ISO-8859-1?Q?Sten_Daniel_S=F8rsdal?= <lists@wm-access.no> To: sid@merlin.com.ua Cc: freebsd-ipfw@freebsd.org Subject: Re: home ipfw Message-ID: <429AEAFD.2090404@wm-access.no> In-Reply-To: <1193652258.20050528211841@merlin.com.ua> References: <1193652258.20050528211841@merlin.com.ua>
next in thread | previous in thread | raw e-mail | index | archive | help
sid@merlin.com.ua wrote:
> hi,
> im justmarried boy, and i ask my father, how to make best relation
> with my wife ?
>
> his answer is...
>
> ipfw add allow ip from wife to me
> ipfw add allow ip from me to wife
> ipfw add prob 0.2 allow tcp from girlfriends talk to wife talk
> ipfw add reset tcp from girlfriends talk to wife talk
> ipfw add allow tcp from wife to { coworkers or girlfriends } talk,handshake,email,icq
> ipfw add allow tcp from { coworkers or girlfriends } to wife talk,handshake,email,icq
> ipfw add allow tcp from father talk to me talk
> ipfw add allow tcp from me talk to father talk
> ipfw add prob 0.2 allow tcp from me 6-11 to girlfriends
> ipfw add prob 0.2 allow tcp from girlfriends to me 6-11
> ipfw add reset log ip from wife to any
> ipfw add reset log ip from any to wife
>
> what does it mean ?
>
That you have a too loose ruleset when it comes to GirlfriendsF<->Wife,
Wife must be able to communcate with any and this should have been stateful!
Obtw: Co-workers<->Wife might be virtualized so that Overtime is
achieved at your own discretion.
:D
--
Sten Daniel Sørsdal
Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?429AEAFD.2090404>
