Skip site navigation (1)Skip section navigation (2)
Date:      Thu, 09 Jun 2005 11:15:51 -0700
From:      Danny Howard <dannyman@toldme.com>
To:        "James Bowman Sineath, III" <sineathj1@citadel.edu>
Cc:        FreeBSD Questions <freebsd-questions@freebsd.org>
Subject:   Re: ipf blocking pass rule
Message-ID:  <42A88757.8070601@toldme.com>
In-Reply-To: <004301c56c8a$686010a0$0463a8c0@GARUDA>
References:  <NHBBKEEMKJDINKDJBJHGCECGJCAD.john@day-light.com> <004301c56c8a$686010a0$0463a8c0@GARUDA>

next in thread | previous in thread | raw e-mail | index | archive | help
James Bowman Sineath, III wrote:

James,

You should send messages to the list directly.  When you start your 
question by hitting "reply" to a question about shell accounts, your 
message will be lumped under there in a lot of mail clients, and is less 
likely to be see.

> I have the following rule in my ipf.rules:
>
> pass in log first quick on xl0 proto tcp from any to any port = 25 
> keep state
>
> for some reason it will pass the first connection but block the next. 
> A log is below. Any ideas on why this is happening would be much 
> appreciated.

I'm no IPF expert, but I'd wonder if "pass in log FIRST quick" is doing 
exactly what you describe correctly ...

-d

-- 
http://dannyman.toldme.com/




Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?42A88757.8070601>