Date: Fri, 04 Apr 2008 11:09:19 +0200 From: Ivan Voras <ivoras@freebsd.org> To: freebsd-net@freebsd.org Subject: Re: Trouble with IPFW or TCP? Message-ID: <ft4r7v$ub9$3@ger.gmane.org> In-Reply-To: <47F57437.6040400@elischer.org> References: <ft3phn$ai3$1@ger.gmane.org> <47F57437.6040400@elischer.org>
next in thread | previous in thread | raw e-mail | index | archive | help
[-- Attachment #1 --] Julian Elischer wrote: > Ivan Voras wrote: >> In which case would an ipfw ruleset like this: >> >> 00100 114872026 40487887607 allow ip from any to any via lo0 >> 00200 0 0 deny ip from any to 127.0.0.0/8 >> 00300 0 0 deny ip from 127.0.0.0/8 to any >> 00600 1585 112576 deny ip from table(0) to me > ipfw add 700 check-state Predictably, adding check-state doesn't do anything new. Additionally, the counters of check-state are always 0 (I don't know if this is good or not). [-- Attachment #2 --] -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.4.6 (GNU/Linux) iD8DBQFH9fA/ldnAQVacBcgRAvoDAJ94W3FvLXT0m5UUy5O7+zfY5arE1gCffhXa 8TGZKzSarV3FSkpNFjS6QGk= =faaQ -----END PGP SIGNATURE-----
Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?ft4r7v$ub9$3>
