From owner-freebsd-questions@FreeBSD.ORG Fri Jun 5 10:10:42 2009 Return-Path: Delivered-To: freebsd-questions@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2001:4f8:fff6::34]) by hub.freebsd.org (Postfix) with ESMTP id AC345106566B for ; Fri, 5 Jun 2009 10:10:42 +0000 (UTC) (envelope-from wojtek@wojtek.tensor.gdynia.pl) Received: from wojtek.tensor.gdynia.pl (wojtek.tensor.gdynia.pl [IPv6:2001:4070:101:2::1]) by mx1.freebsd.org (Postfix) with ESMTP id 1007B8FC14 for ; Fri, 5 Jun 2009 10:10:40 +0000 (UTC) (envelope-from wojtek@wojtek.tensor.gdynia.pl) Received: from wojtek.tensor.gdynia.pl (localhost [IPv6:::1]) by wojtek.tensor.gdynia.pl (8.14.3/8.14.3) with ESMTP id n55AAVQJ004420; Fri, 5 Jun 2009 12:10:32 +0200 (CEST) (envelope-from wojtek@wojtek.tensor.gdynia.pl) Received: from localhost (wojtek@localhost) by wojtek.tensor.gdynia.pl (8.14.3/8.14.3/Submit) with ESMTP id n55AATFI004417; Fri, 5 Jun 2009 12:10:30 +0200 (CEST) (envelope-from wojtek@wojtek.tensor.gdynia.pl) Date: Fri, 5 Jun 2009 12:10:29 +0200 (CEST) From: Wojciech Puchar To: Roy Stuivenberg In-Reply-To: <1244191116.10570.25.camel@rs-unix.roycs.nl> Message-ID: References: <1244191116.10570.25.camel@rs-unix.roycs.nl> User-Agent: Alpine 2.00 (BSF 1167 2008-08-23) MIME-Version: 1.0 Content-Type: TEXT/PLAIN; charset=US-ASCII; format=flowed Cc: freebsd-questions@freebsd.org Subject: Re: ICQ - IPFW X-BeenThere: freebsd-questions@freebsd.org X-Mailman-Version: 2.1.5 Precedence: list List-Id: User questions List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Fri, 05 Jun 2009 10:10:42 -0000 > The question is, I'm looking for a rule in my IPFW script. > Running 7.2 stable - ipfw configured in the kernel without nat. > Because after some googl'in, i read it's dangerous to just open port > 4000 udp. dangerous because of? are you running any insecure service on port 4000 udp? Of course ICQ may be dangerous by itself (i don't know), but as you decided to use it then it's not in question.