From owner-freebsd-questions Sun Jul 5 21:48:27 1998 Return-Path: Received: (from majordom@localhost) by hub.freebsd.org (8.8.8/8.8.8) id VAA00729 for freebsd-questions-outgoing; Sun, 5 Jul 1998 21:48:27 -0700 (PDT) (envelope-from owner-freebsd-questions@FreeBSD.ORG) Received: from alpo.whistle.com (alpo.whistle.com [207.76.204.38]) by hub.freebsd.org (8.8.8/8.8.8) with ESMTP id VAA00707 for ; Sun, 5 Jul 1998 21:48:23 -0700 (PDT) (envelope-from julian@whistle.com) Received: (from daemon@localhost) by alpo.whistle.com (8.8.5/8.8.5) id VAA02058; Sun, 5 Jul 1998 21:42:45 -0700 (PDT) Received: from current1.whistle.com(207.76.205.22) via SMTP by alpo.whistle.com, id smtpd002055; Mon Jul 6 04:42:36 1998 Date: Sun, 5 Jul 1998 21:42:33 -0700 (PDT) From: Julian Elischer To: junkmale@xtra.co.nz cc: freebsd-questions@FreeBSD.ORG Subject: Re: using IPFW as a firewall In-Reply-To: <199807060226.OAA25536@cyclops.xtra.co.nz> Message-ID: MIME-Version: 1.0 Content-Type: TEXT/PLAIN; charset=US-ASCII Sender: owner-freebsd-questions@FreeBSD.ORG Precedence: bulk X-Loop: FreeBSD.ORG see /etc/rc.firewall. On Mon, 6 Jul 1998, Dan Langille wrote: > I've started playing around with IPFW in order to boost up the protection > around my home network. I've seen some recommendations as to what to > filter out, but I haven't seen many explicit examples of what rules will > make up a nice simple firewall. > > My home net consists of the freebd box and two NT boxes. The freebsd box > is acting as a firewall. My goal is allow my NT boxes unhindered access > to the home net and to the Internet but prevent everything else from > coming in. What I don't know is what to block. And how to do it. I've > been through the examples found on the freebsd website and through stuff > I've found with search engines. Mostly, I wind up blocking something I > shouldn't and things stop working. I've started looking at /etc/services > for an indication of what's necessary for my goals. I'd like some > guidance. > > > -- > Dan Langille > DVL Software Limited > http://www.dvl-software.com : for race timing solutions > > To Unsubscribe: send mail to majordomo@FreeBSD.org > with "unsubscribe freebsd-questions" in the body of the message > To Unsubscribe: send mail to majordomo@FreeBSD.org with "unsubscribe freebsd-questions" in the body of the message