Skip site navigation (1)Skip section navigation (2)
Date:      Fri, 04 Apr 2008 11:09:19 +0200
From:      Ivan Voras <ivoras@freebsd.org>
To:        freebsd-net@freebsd.org
Subject:   Re: Trouble with IPFW or TCP?
Message-ID:  <ft4r7v$ub9$3@ger.gmane.org>
In-Reply-To: <47F57437.6040400@elischer.org>
References:  <ft3phn$ai3$1@ger.gmane.org> <47F57437.6040400@elischer.org>

next in thread | previous in thread | raw e-mail | index | archive | help

[-- Attachment #1 --]
Julian Elischer wrote:
> Ivan Voras wrote:
>> In which case would an ipfw ruleset like this:
>>
>> 00100 114872026  40487887607 allow ip from any to any via lo0
>> 00200         0            0 deny ip from any to 127.0.0.0/8
>> 00300         0            0 deny ip from 127.0.0.0/8 to any
>> 00600      1585       112576 deny ip from table(0) to me

> ipfw add 700 check-state

Predictably, adding check-state doesn't do anything new. Additionally,
the counters of check-state are always 0 (I don't know if this is good
or not).


[-- Attachment #2 --]
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.6 (GNU/Linux)

iD8DBQFH9fA/ldnAQVacBcgRAvoDAJ94W3FvLXT0m5UUy5O7+zfY5arE1gCffhXa
8TGZKzSarV3FSkpNFjS6QGk=
=faaQ
-----END PGP SIGNATURE-----

Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?ft4r7v$ub9$3>