From owner-freebsd-questions Sat Mar 2 15:59:38 2002 Delivered-To: freebsd-questions@freebsd.org Received: from moutng0.schlund.de (moutng0.kundenserver.de [212.227.126.170]) by hub.freebsd.org (Postfix) with ESMTP id C6F2837B41C for ; Sat, 2 Mar 2002 15:59:35 -0800 (PST) Received: from [195.20.224.148] (helo=mxintern.kundenserver.de) by moutng0.schlund.de with esmtp (Exim 3.22 #2) id 16hJPa-0000Yi-00 for questions@freebsd.org; Sun, 03 Mar 2002 00:59:34 +0100 Received: from [172.17.29.6] (helo=alex.i.schlund.de) by mxintern.kundenserver.de with smtp (Exim 2.12 #3) id 16hJPa-0002dX-00 for questions@freebsd.org; Sun, 3 Mar 2002 00:59:34 +0100 Received: (qmail 78672 invoked by uid 519); 2 Mar 2002 23:59:33 -0000 Date: Sun, 3 Mar 2002 00:59:33 +0100 From: Alex Kiesel To: Drew Tomlinson Cc: questions@freebsd.org Subject: Re: Firewall Script Fails on Startup Message-ID: <20020302235933.GC78568@schlund.de> References: <006f01c1c20a$55f84500$1e01a8c0@lc.ca.gov> Mime-Version: 1.0 Content-Type: text/plain; charset=us-ascii Content-Disposition: inline In-Reply-To: <006f01c1c20a$55f84500$1e01a8c0@lc.ca.gov> User-Agent: Mutt/1.3.27i X-Binford: 6100 (more power) Sender: owner-freebsd-questions@FreeBSD.ORG Precedence: bulk List-ID: List-Archive: (Web Archive) List-Help: (List Instructions) List-Subscribe: List-Unsubscribe: X-Loop: FreeBSD.ORG On Mar 02, 2002, Drew Tomlinson wrote: > Some time back, I created a firewall script called rc.firewall.current > based on info I found on the web. At that time, I thought everything > was working and was satisfied that it ran at startup. Yesterday, I had > to reboot my box. Today I was reading the daily cron output and I found > that the firewall script failed and (because of my default accept) I was > wide open. Here's the relavent part of the output: [snip] > I've done some poking around but can't figure out how to determine why > rc.firewall.current fails during startup, yet I can run "sh > /etc/rc.firewall/current" from the command line and everything works > without error. Where is this logged? I found the above stuff is in > /var/log/dmesg.today so I tried adding the -v flag to /bin/sh in > rc.network to see if I get some clues. However, dmesg.today doesn't > change after a reboot. Must be created from periodic.daily? Does the entry "firewall_script" in /etc/rc.conf point to your script? Alex -- Alex Kiesel PGP Key: 0x09F4FA11 Todays excuse: User was distributing pornography on server; system seized by FBI. To Unsubscribe: send mail to majordomo@FreeBSD.org with "unsubscribe freebsd-questions" in the body of the message