Skip site navigation (1)Skip section navigation (2)
Date:      Thu, 6 Mar 2003 16:23:26 +0100
From:      "Daan Vreeken [PA4DAN]" <Danovitsch@Danovitsch.dnsq.org>
To:        Josh Brooks <user@mail.econolodgetulsa.com>
Cc:        FreeBSD-questions@FreeBSD.org
Subject:   Re: loading ipfw module without default-deny
Message-ID:  <200303061623.26871.Danovitsch@Danovitsch.dnsq.org>
In-Reply-To: <20030306031748.W94847-100000@mail.econolodgetulsa.com>
References:  <20030306031748.W94847-100000@mail.econolodgetulsa.com>

next in thread | previous in thread | raw e-mail | index | archive | help
On Thursday 06 March 2003 12:19, Josh Brooks wrote:
> Hello,
>
> I want to:
>
> kldload ipfw.ko
>
> but I am not near the physical machine, and cannot type in an allow rul=
e
> after loading the module - by default all traffic will be denied.
> How can I load the ipfw.ko module but not knock myself off the network =
?

try this :

kldload ipfw.ko ; ipfw add 50000 allow ip from any to any
or even better :
kldload ipfw.ko ; sh /etc/rc.firewall

> My only thought was to put an `ipfw add` rule into a cron job to run on=
e
> minute after I load the module, but that seems silly :)

grtz,
Daan

To Unsubscribe: send mail to majordomo@FreeBSD.org
with "unsubscribe freebsd-questions" in the body of the message




Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?200303061623.26871.Danovitsch>