Skip site navigation (1)Skip section navigation (2)
Date:      Wed, 2 May 2007 22:27:15 +0200
From:      "Tun Eler" <tuneler@bsdmail.com>
To:        freebsd-questions@freebsd.org
Subject:   network address in IP FILTER
Message-ID:  <20070502202715.CBE3E7AEB8@ws5-10.us4.outblaze.com>

index | next in thread | raw e-mail

Hi all,
i want to have these two rules in the ipf.rules file

pass in quick on $oif proto tcp from 217.83.122.17/8 to $myip port = 22 flags S keep state
pass in quick on $oif proto tcp from 217.83.89.61/8 to $myip port = 22 flags S keep state

where $iof is my interface. Executing the config file i get the following error

ioctl(add/insert rule): File exists

Which means the rule is being loaded twice. But the networka addresses above are
different!!! If i comment any of the above two lines, ipf executes fine.
Any idea how to solve this error, and allow only these two networks above?
Thanks in advance ...




-- 
_______________________________________________
Get your free email from http://bsdmail.com


help

Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?20070502202715.CBE3E7AEB8>