Skip site navigation (1)Skip section navigation (2)
Date:      Sat, 6 Apr 2002 00:44:56 -0800
From:      Luigi Rizzo <rizzo@icir.org>
To:        Barry Irwin <bvi@itouchlabs.com>
Cc:        freebsd-net@FreeBSD.ORG
Subject:   Re: Packets lost when forwarding disabled
Message-ID:  <20020406004456.A24597@iguana.icir.org>
In-Reply-To: <20020406100901.C62987@itouchlabs.com>
References:  <20020406100901.C62987@itouchlabs.com>

next in thread | previous in thread | raw e-mail | index | archive | help
On Sat, Apr 06, 2002 at 10:09:01AM +0200, Barry Irwin wrote:
> Hi All
> 
> After mucking around on a firewall problem on the other side of the world
> yesterday, the problem was that net.inet.ip.forwarding was set to off * the
> gateway_enable had been mangled in rc.conf).  Packets were being received by
...
> I thought it would be useful to have a sysctl knob which would allow one to
> cause these packets to be logged.  From a security pov it would be
> interesting to know if people are trying to use you as a gateway?
> 
> Now for the real question, does somethign like this already exist, and am I

netstat -s -p ip tells you that.

	cheers
	luigi

> going to be re-inventing the whell if I add it to the kernel. I s the
> another way of doing this?
> 
> Thanks
> Barry
> 
> --
> Barry Irwin		bvi@itouchlabs.com			+27214875177
> Systems Administrator: Networks And Security
> Itouch Labs 		http://www.itouchlabs.com		South Africa
> 
> 
> To Unsubscribe: send mail to majordomo@FreeBSD.org
> with "unsubscribe freebsd-net" in the body of the message

To Unsubscribe: send mail to majordomo@FreeBSD.org
with "unsubscribe freebsd-net" in the body of the message




Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?20020406004456.A24597>