From owner-freebsd-questions@FreeBSD.ORG Wed May 25 06:34:55 2005 Return-Path: X-Original-To: freebsd-questions@freebsd.org Delivered-To: freebsd-questions@freebsd.org Received: from mx1.FreeBSD.org (mx1.freebsd.org [216.136.204.125]) by hub.freebsd.org (Postfix) with ESMTP id 8D97C16A41C for ; Wed, 25 May 2005 06:34:55 +0000 (GMT) (envelope-from perikillo@gmail.com) Received: from rproxy.gmail.com (rproxy.gmail.com [64.233.170.192]) by mx1.FreeBSD.org (Postfix) with ESMTP id 0669A43D1F for ; Wed, 25 May 2005 06:34:54 +0000 (GMT) (envelope-from perikillo@gmail.com) Received: by rproxy.gmail.com with SMTP id a41so32860rng for ; Tue, 24 May 2005 23:34:54 -0700 (PDT) DomainKey-Signature: a=rsa-sha1; q=dns; c=nofws; s=beta; d=gmail.com; h=received:message-id:date:from:reply-to:to:subject:in-reply-to:mime-version:content-type:references; b=rT0rfakpjAVhEgHzIRhgcTpWnuW8sicZDsMWHkJ3uRdWOJ5L9FKQ/EQ2n086CshEaunFeDekwvwXplrvTWuiqhoCdG+yg3G7V4xy7q4ZbnaOyOSsR8hEibWV4Am2iDlM+sgxuBP6ZEg2zIiY6Ez8hUJCFrI4N8uenLafqIhPPtg= Received: by 10.38.12.13 with SMTP id 13mr271228rnl; Tue, 24 May 2005 23:34:54 -0700 (PDT) Received: by 10.38.98.73 with HTTP; Tue, 24 May 2005 23:34:54 -0700 (PDT) Message-ID: <51d7a5160505242334249e368b@mail.gmail.com> Date: Tue, 24 May 2005 23:34:54 -0700 From: perikillo To: freebsd-questions@freebsd.org In-Reply-To: <4580439D-D489-4471-A026-4D8443B92C2D@mac.com> Mime-Version: 1.0 References: <51d7a516050524080843451d09@mail.gmail.com> <4580439D-D489-4471-A026-4D8443B92C2D@mac.com> Content-Type: text/plain; charset=ISO-8859-1 Content-Transfer-Encoding: quoted-printable Content-Disposition: inline X-Content-Filtered-By: Mailman/MimeDel 2.1.5 Subject: Re: question about dhcp client X-BeenThere: freebsd-questions@freebsd.org X-Mailman-Version: 2.1.5 Precedence: list Reply-To: perikillo List-Id: User questions List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Wed, 25 May 2005 06:34:55 -0000 Mmmm ok i go it, but i dont think that my friend wants to buy more=20 equipment, well i will trust on freebsd like always. Thanks Charles for your information. Great day all. On 5/24/05, Charles Swiger wrote: >=20 > On May 24, 2005, at 11:08 AM, perikillo wrote: > > Hi all, iam going to setup one firewall for a friend, i need to > > use the > > dhcp client to get the IP, my question is: > > > > 1; I need to have the BPF device enable, is a rule? >=20 > You need BPF if you want dhclient to work, yes. >=20 > > Because normally, by security is recomend that this option need to be > > disable!!! >=20 > Agreed. Using dynamic network configuration on a firewall is not > very secure. Get a broadband router to do DHCP and NAT, and place > your firewall between that device and your network configured using > static info... >=20 > -- > -Chuck >=20 >