Date: Tue, 27 May 2003 09:04:11 +0200 From: "Roger 'Rocky' Vetterberg" <listsub@401.cx> To: Bill Moran <wmoran@potentialtech.com> Cc: freebsd-questions@freebsd.org Subject: Re: Running Dummynet Message-ID: <3ED30DEB.3010805@401.cx> References: <20030524145328.16351.qmail@web13406.mail.yahoo.com> <3ECFA2E5.8020701@potentialtech.com>
next in thread | previous in thread | raw e-mail | index | archive | help
Bill Moran wrote: > Please use reply-all to send your replies to the mailing list > as well. > > Fehmi wrote: > >> ipfw show: >> 100 allow ip from any to any >> 200 pipe 1 bw 1kbit/s delay 200ms >> 65554 deny ip from any to any > > > This actually works? It looks to me like everything should be > blocked by the last rule: thus no networking should work. I have to disagree. Everything will be *allowed* by the *first* rule, none of the other rules will ever happen, including the last one. This is pretty much as effective as no firewall at all. -- R
Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?3ED30DEB.3010805>