Date: Mon, 15 Jun 2009 12:51:36 +0400 From: subbsd <subbsd@gmail.com> To: freebsd-questions@freebsd.org Subject: Re: enable IPFIREWALL_DEFAULT_TO_ACCEPT for GENERIC kernel Message-ID: <200906151251.36846.subbsd@gmail.com> In-Reply-To: <4A360834.2070503@gmail.com> References: <200906151144.34054.subbsd@gmail.com> <4A360834.2070503@gmail.com>
next in thread | previous in thread | raw e-mail | index | archive | help
Hello On Monday 15 June 2009 12:37:08 membrana wrote: > subbsd wrote: > > Hello maillist, > > > > Whether there is a way for booting GENERIC kernel with > > ipfw_load="YES" > > > > and > > > > 65535 allow ip from any to any > > > > rules without recompile kernel with options IPFIREWALL_DEFAULT_TO_ACCEPT > > ? > > > > This is single options who force me customize my own kernel with freebsd- > > update. > > > > Thanks! > > put ipfw_load="YES" in /boot/loader.conf - keep in mind default is deny > ... As i understand, no way for make permit by default when ipfw.ko is loading, before running rc-/user-scripts (rc/rc.firewall...) ? Thanks
Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?200906151251.36846.subbsd>