From owner-freebsd-current Mon Jul 29 5:43:29 2002 Delivered-To: freebsd-current@freebsd.org Received: from mx1.FreeBSD.org (mx1.FreeBSD.org [216.136.204.125]) by hub.freebsd.org (Postfix) with ESMTP id 525F637B42F for ; Mon, 29 Jul 2002 05:43:24 -0700 (PDT) Received: from axl.seasidesoftware.co.za (axl.seasidesoftware.co.za [196.31.7.201]) by mx1.FreeBSD.org (Postfix) with ESMTP id BC88443E3B for ; Mon, 29 Jul 2002 05:43:21 -0700 (PDT) (envelope-from sheldonh@starjuice.net) Received: from sheldonh by axl.seasidesoftware.co.za with local (Exim 4.10) id 17Z9tK-000Aus-00; Mon, 29 Jul 2002 14:44:50 +0200 Date: Mon, 29 Jul 2002 14:44:50 +0200 From: Sheldon Hearn To: karl agee Cc: freebsd-current Subject: Re: firewall support? Message-ID: <20020729124450.GC41804@starjuice.net> Mail-Followup-To: karl agee , freebsd-current References: <1027839486.324.3.camel@enterprise.workgroup> <20020728074931.GB872@fonix.adamsfamily.xx> Mime-Version: 1.0 Content-Type: text/plain; charset=us-ascii Content-Disposition: inline In-Reply-To: <20020728074931.GB872@fonix.adamsfamily.xx> User-Agent: Mutt/1.5.1i Sender: owner-freebsd-current@FreeBSD.ORG Precedence: bulk List-ID: List-Archive: (Web Archive) List-Help: (List Instructions) List-Subscribe: List-Unsubscribe: X-Loop: FreeBSD.ORG On (2002/07/28 09:49), Szilveszter Adam wrote: > > is firewall support built into the -current kernel or does it need to be > > compiled in? > > It is not in GENERIC, but you can always either compile it in, or load > it from a module by editing /boot/loader.conf. Beware! AFAIK, the kernel-loadable version of IPFW (ipfw.ko) defaults to deny! Enable with care on remotely managed systems for which you do not have serial console access. Ciao, Sheldon. To Unsubscribe: send mail to majordomo@FreeBSD.org with "unsubscribe freebsd-current" in the body of the message