From owner-freebsd-users-jp@freebsd.org Thu Mar 9 08:11:27 2017 Return-Path: Delivered-To: freebsd-users-jp@mailman.ysv.freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2001:1900:2254:206a::19:1]) by mailman.ysv.freebsd.org (Postfix) with ESMTP id E5FD8D049D8 for ; Thu, 9 Mar 2017 08:11:27 +0000 (UTC) (envelope-from matumoto@pluto.ai.kyutech.ac.jp) Received: from pluto44.pluto.ai.kyutech.ac.jp (pluto44.pluto.ai.kyutech.ac.jp [131.206.22.44]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (Client did not present a certificate) by mx1.freebsd.org (Postfix) with ESMTPS id B87C41F6E for ; Thu, 9 Mar 2017 08:11:27 +0000 (UTC) (envelope-from matumoto@pluto.ai.kyutech.ac.jp) Received: from localhost (localhost [IPv6:::1]) by pluto44.pluto.ai.kyutech.ac.jp (Postfix) with ESMTP id A856567716; Thu, 9 Mar 2017 17:11:17 +0900 (JST) Date: Thu, 09 Mar 2017 17:11:17 +0900 (JST) Message-Id: <20170309.171117.491490340271419574.matumoto@pluto.ai.kyutech.ac.jp> To: freebsd-users-jp@freebsd.org From: Ryuji MATSUMOTO In-Reply-To: <20170307.194818.1218798633239477588.hrs@allbsd.org> References: <20170307.182632.2029998101879781962.matumoto@pluto.ai.kyutech.ac.jp> <20170307.194818.1218798633239477588.hrs@allbsd.org> X-Mailer: Mew version 6.7 on Emacs 24.3 / Mule 6.0 (HANACHIRUSATO) Mime-Version: 1.0 Content-Type: Text/Plain; charset=iso-2022-jp Content-Transfer-Encoding: 7bit Subject: [FreeBSD-users-jp 96057] Re: =?iso-2022-jp?b?RE5TGyRCJHI0RjtrJDckRkYwRSokSxsoQmlwZnc=?= =?iso-2022-jp?b?GyRCJE4layE8JWskckRJMkMbKEIvGyRCOm89fCQ5JGslRCE8JWsbKEI=?= =?iso-2022-jp?b?GyRCISUbKEI=?= X-BeenThere: freebsd-users-jp@freebsd.org X-Mailman-Version: 2.1.23 Precedence: list List-Id: Discussion relevant to FreeBSD communities in Japan List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Thu, 09 Mar 2017 08:11:28 -0000 松元@福岡です. Hiroki様: Subject: Re: [FreeBSD-users-jp 96055] DNSを監視して動的にipfwのルールを追加/削除するツール. Date: Tue, 07 Mar 2017 19:48:18 +0900 (JST) > 12340 allow tcp from LOCAL-IP to table(1) dst-port 993 > > というようなルールを定義して、添付のようなスクリプトを > cron でまわすのはいかがでしょうか。 ありがとうございます(_m_) 非常に簡潔なスクリプトで感動してしまいました! ----------- PS: 返事が遅くすいません.私のメール振り分けルールが悪くて見落としてい ました,こちらを見たら返事がついててビックリしてしまいました(^_^; https://lists.freebsd.org/pipermail/freebsd-users-jp/2017-March/subject.html#1056 実は,昨日からperlでゴソゴソ書いてました. $ wc ipfw-dns-kanshi.pl 320 637 7501 ipfw-dns-kanshi.pl 同じ事をするスクリプトが何故か320行! ついでにまだ完成してない! -- 松元隆二