From owner-freebsd-net@freebsd.org Thu May 3 13:35:22 2018 Return-Path: Delivered-To: freebsd-net@mailman.ysv.freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2610:1c1:1:606c::19:1]) by mailman.ysv.freebsd.org (Postfix) with ESMTP id AB4B9FAB863 for ; Thu, 3 May 2018 13:35:22 +0000 (UTC) (envelope-from julian@freebsd.org) Received: from vps1.elischer.org (vps1.elischer.org [204.109.63.16]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (Client CN "vps1.elischer.org", Issuer "CA Cert Signing Authority" (not verified)) by mx1.freebsd.org (Postfix) with ESMTPS id 49B9B7F978 for ; Thu, 3 May 2018 13:35:22 +0000 (UTC) (envelope-from julian@freebsd.org) Received: from Julian-MBP3.local (124-148-108-197.dyn.iinet.net.au [124.148.108.197]) (authenticated bits=0) by vps1.elischer.org (8.15.2/8.15.2) with ESMTPSA id w43DZE4a017468 (version=TLSv1.2 cipher=DHE-RSA-AES128-SHA bits=128 verify=NO); Thu, 3 May 2018 06:35:19 -0700 (PDT) (envelope-from julian@freebsd.org) Subject: Re: ipfw -- selecting locally generated packets To: Michael Sierchio , "freebsd-net@freebsd.org" References: <979d3478-4bec-e6a1-41cd-bb26beb93123@wagsky.com> From: Julian Elischer Message-ID: <2b8de01f-9c67-8ead-5891-f0241be31a8d@freebsd.org> Date: Thu, 3 May 2018 21:35:08 +0800 User-Agent: Mozilla/5.0 (Macintosh; Intel Mac OS X 10.13; rv:52.0) Gecko/20100101 Thunderbird/52.7.0 MIME-Version: 1.0 In-Reply-To: Content-Type: text/plain; charset=utf-8; format=flowed Content-Transfer-Encoding: 7bit Content-Language: en-US X-BeenThere: freebsd-net@freebsd.org X-Mailman-Version: 2.1.25 Precedence: list List-Id: Networking and TCP/IP with FreeBSD List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Thu, 03 May 2018 13:35:22 -0000 On 3/5/18 12:08 am, Michael Sierchio wrote: > On Mon, Apr 30, 2018 at 10:48 AM, Jeff Kletsky wrote: > >> "not recv any" doesn't seem to be helpful either >> >> $ sudo ipfw add 64000 count ip from any to any out xmit any not recv >> any > > The loopback interface, lo0 ? > _______________________________________________ > freebsd-net@freebsd.org mailing list > https://lists.freebsd.org/mailman/listinfo/freebsd-net > To unsubscribe, send any mail to "freebsd-net-unsubscribe@freebsd.org" > As was pointed out a selector might be add 100 ip from me to any out not recv * one wonders if that would work or maybe skipto {line x) any from any to any out recv * followed by lines htat are for locally generated. these not tested..