Skip site navigation (1)Skip section navigation (2)
Date:      Tue, 29 Feb 2000 21:13:58 +1300 (NZDT)
From:      Andrew McNaughton <andrew@scoop.co.nz>
To:        cjclark@home.com
Cc:        Lev Serebryakov <lev@imc.macro.ru>, All <freebsd-security@FreeBSD.ORG>
Subject:   Re: ipfw log accounting
Message-ID:  <Pine.BSF.3.96.1000229211227.28131E-100000@aurora.scoop.co.nz>
In-Reply-To: <20000228215904.B31743@cc942873-a.ewndsr1.nj.home.com>

next in thread | previous in thread | raw e-mail | index | archive | help

On Mon, 28 Feb 2000, Crist J. Clark wrote:

> On Tue, Feb 29, 2000 at 01:46:53AM +0300, Lev Serebryakov wrote:
> [snip]
> >   And one more question:
> >   How could I write rule, which skip all broadcast traffic? My
> >   computer is on big provider's net, and here is more than one
> >   broadcast address (many subnets on one wire)...
> 
> Never tried this and haven't glanced at the source to see if it has a
> chance of working, but _theoretically_ is there a reason that,
> 
>              deny ip from 0.0.0.255:0.0.0.255 to any
> 
> A "reversed" netmask won't work?


I use this.  It works just fine.  


--
Andrew McNaughton
andrew@scoop.co.nz






To Unsubscribe: send mail to majordomo@FreeBSD.org
with "unsubscribe freebsd-security" in the body of the message




Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?Pine.BSF.3.96.1000229211227.28131E-100000>