Date: Wed, 16 Jul 2003 09:04:49 +0200 From: des@des.no (Dag-Erling =?iso-8859-1?q?Sm=F8rgrav?=) To: Luigi Rizzo <luigi@FreeBSD.org> Cc: cvs-all@FreeBSD.org Subject: Re: cvs commit: src/sys/netinet ip_fw.h ip_fw2.c Message-ID: <xzpn0ffrlym.fsf@dwp.des.no> In-Reply-To: <200307152307.h6FN7YcT018837@repoman.freebsd.org> (Luigi Rizzo's message of "Tue, 15 Jul 2003 16:07:34 -0700 (PDT)") References: <200307152307.h6FN7YcT018837@repoman.freebsd.org>
next in thread | previous in thread | raw e-mail | index | archive | help
Luigi Rizzo <luigi@FreeBSD.org> writes: > This implement a flexible form of "persistent rules" which you might > want to have available even after an "ipfw flush". > Note that this change does not violate POLA, because you could not > use set 31 in a ruleset before this change. This reminds me, is there a way to delete a keep-state rule without also deleting the dynamic rules it spawned? DES --=20 Dag-Erling Sm=F8rgrav - des@des.no
Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?xzpn0ffrlym.fsf>