Skip site navigation (1)Skip section navigation (2)
Date:      Mon, 09 Mar 1998 21:41:44 -0500
From:      Mike Tancsa <mike@sentex.net>
To:        stable@FreeBSD.ORG
Subject:   ipfw unreach statement help
Message-ID:  <3.0.2.32.19980309214144.00c75100@sentex.net>

next in thread | raw e-mail | index | archive | help
On a FreeBSD 2.2-980304-SNAP machine, I added the following

ipfw add 02007 unreach 13 log icmp from any to any in recv ed0 icmptype 8

which shows up as
02007          7        588 unreach filter-prohib log icmp from any to any
in recv ed0 icmptype 8  


But when I ping the host from the outside, I dont get an ICMP message back
that its blocked by a filter as I do when ping a different non-FreeBSD
hosts (e.g.)

36 bytes from cn-onet.uwaterloo.ca (129.97.144.1): Communication prohibited
by filter
Vr HL TOS  Len   ID Flg  off TTL Pro  cks      Src      Dst
 4  5  00 5400 d4ac   0 0000  f6  01 b217 207.245.239.1  129.97.42.10


Thanks,

	---Mike
**********************************************************************
Mike Tancsa  (mike@sentex.net)           * To do is to be  -- Nietzsche
Sentex Communications Corp,              * To be is to do  -- Sartre 
Cambridge, Ontario                       * Do be do be do  -- Sinatra
(http://www.sentex.net/~mdtancsa)        *

To Unsubscribe: send mail to majordomo@FreeBSD.org
with "unsubscribe freebsd-stable" in the body of the message



Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?3.0.2.32.19980309214144.00c75100>