Skip site navigation (1)Skip section navigation (2)
Date:      Sun, 15 Jun 2003 23:45:36 -0400 (EDT)
From:      Andre Guibert de Bruet <andy@siliconlandmark.com>
To:        Kris Kennaway <kris@obsecurity.org>
Cc:        current@freebsd.org
Subject:   Re: rc.firewall not executed?
Message-ID:  <20030615233848.D41111@alpha.siliconlandmark.com>
In-Reply-To: <20030616002804.GA33512@rot13.obsecurity.org>
References:  <20030614074457.GA28169@rot13.obsecurity.org> <20030616002804.GA33512@rot13.obsecurity.org>

next in thread | previous in thread | raw e-mail | index | archive | help


On Sun, 15 Jun 2003, Kris Kennaway wrote:

> On Sun, Jun 15, 2003 at 09:36:23AM -0400, Andre Guibert de Bruet wrote:
> >
> > On Sat, 14 Jun 2003, Kris Kennaway wrote:
> >
> > > I just noticed that my ipfw rules were not loaded the last time I
> > > rebooted.  My rc.conf is included below - has something changed
> > > recently so that these settings are not enough?  I didn't see anything
> > > relevant in UPDATING.  My /etc/firewall.conf exists and is readable
> > > (and unchanged since 2002).
> > >
> > > Kris
> > >
> > > ----
> > > # $FreeBSD: src/etc/defaults/rc.conf,v 1.156 2002/08/30 13:01:42 hm Exp $
> > > hostname="citusc17.usc.edu"     # Set this!
> > > nisdomainname="cituscdomain"    # Set to NIS domain if using NIS (or NO).
> > > firewall_enable="YES"           # Set to YES to enable firewall functionality
> > > firewall_type="/etc/firewall.conf"      # Firewall type (see /etc/rc.firewall)
> >                  ^^^^^^^^^^^^^^^^^^
> > This is wrong. Set it to "UNKNOWN". There's firewall_script for that.
>
> Nope..read rc.firewall(5) :-)

Well, I'm assuming that you're refering to the rc.firewall that's in
section 8 of the manual; And yes, I stand corrected.

But I still think that firewall_script is more intuitive... ;)

Regards,

> Andre Guibert de Bruet | Enterprise Software Consultant >
> Silicon Landmark, LLC. | http://siliconlandmark.com/    >



Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?20030615233848.D41111>