From owner-freebsd-security@FreeBSD.ORG Fri Jan 27 02:22:25 2006 Return-Path: X-Original-To: freebsd-security@freebsd.org Delivered-To: freebsd-security@freebsd.org Received: from mx1.FreeBSD.org (mx1.freebsd.org [216.136.204.125]) by hub.freebsd.org (Postfix) with ESMTP id 4DE7416A420; Fri, 27 Jan 2006 02:22:25 +0000 (GMT) (envelope-from mikhailg@navalradio.cl) Received: from cayster.multisite.site5.com (cayster.multisite.site5.com [216.118.97.189]) by mx1.FreeBSD.org (Postfix) with ESMTP id BAB2F43D46; Fri, 27 Jan 2006 02:22:24 +0000 (GMT) (envelope-from mikhailg@navalradio.cl) Received: from ppp105-208.lns1.hba1.internode.on.net ([150.101.105.208]) by cayster.multisite.site5.com with esmtpa (Exim 4.52) id 1F2JFm-0000bZ-95; Thu, 26 Jan 2006 21:22:23 -0500 Message-ID: <43D9837E.8010900@navalradio.cl> Date: Fri, 27 Jan 2006 13:20:46 +1100 From: Mikhail Goriachev Organization: Naval Radio User-Agent: Thunderbird 1.5 (Macintosh/20051201) MIME-Version: 1.0 To: gahn References: <20060126233439.62351.qmail@web52101.mail.yahoo.com> In-Reply-To: <20060126233439.62351.qmail@web52101.mail.yahoo.com> X-Enigmail-Version: 0.94.0.0 OpenPGP: id=4E148A3B Content-Type: multipart/signed; micalg=pgp-sha1; protocol="application/pgp-signature"; boundary="------------enig6C003DDD1A4CE3F5ABEA965D" X-Antivirus-Scanner: This message has been scanned by ClamAV. X-AntiAbuse: This header was added to track abuse, please include it with any abuse report X-AntiAbuse: Primary Hostname - cayster.multisite.site5.com X-AntiAbuse: Original Domain - freebsd.org X-AntiAbuse: Originator/Caller UID/GID - [0 0] / [47 12] X-AntiAbuse: Sender Address Domain - navalradio.cl X-Source: X-Source-Args: X-Source-Dir: X-Mailman-Approved-At: Fri, 27 Jan 2006 03:30:26 +0000 Cc: freebsd security , freebsd general questions Subject: Re: strange problem with ipfw and rc.conf X-BeenThere: freebsd-security@freebsd.org X-Mailman-Version: 2.1.5 Precedence: list List-Id: "Security issues \[members-only posting\]" List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Fri, 27 Jan 2006 02:22:25 -0000 This is an OpenPGP/MIME signed message (RFC 2440 and 3156) --------------enig6C003DDD1A4CE3F5ABEA965D Content-Type: text/plain; charset=ISO-8859-1 Content-Transfer-Encoding: quoted-printable gahn wrote: > Hi all: >=20 > I have strange probelm with rc.conf. I set up ipfw > (compiled into kernel) on freebsd-5.4 and it doesn't > seem to load ipfw rulesets (it uses default ruleset > 65335 locking out everything). I have to do "sh > /etc/ipfw.rules" in order to load the rulesets, once I > did that, I can access the box from remote locations >=20 > [...] > ipfilter_rules=3D"/etc/ipf.rules" =20 Hi, Your rc.conf looks for ipf.rules instead of ipfw.rules files. Adding the missing "w" may solve your problem. Mikhail. --=20 Mikhail Goriachev Systems Administrator Naval Radio Telephone: +61 (0)3 62252501 Mobile Phone: +61 (0)4 38255158 E-Mail: mikhailg@navalradio.cl Web: http://www.navalradio.cl PGP Key ID: 0x4E148A3B PGP Key Fingerprint: D96B 7C14 79A5 8824 B99D 9562 F50E 2F5D 4E14 8A3B --------------enig6C003DDD1A4CE3F5ABEA965D Content-Type: application/pgp-signature; name="signature.asc" Content-Description: OpenPGP digital signature Content-Disposition: attachment; filename="signature.asc" -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.4.1 (Darwin) iD8DBQFD2YOF9Q4vXU4UijsRAmA/AJ9HfOYVy6sHuO5cK8CGhrLNcAv/KACfXVGV 3iE+7hjYm1c4nAext6jaTys= =2TKq -----END PGP SIGNATURE----- --------------enig6C003DDD1A4CE3F5ABEA965D--