Skip site navigation (1)Skip section navigation (2)
Date:      Tue, 27 May 2003 09:04:11 +0200
From:      "Roger 'Rocky' Vetterberg" <listsub@401.cx>
To:        Bill Moran <wmoran@potentialtech.com>
Cc:        freebsd-questions@freebsd.org
Subject:   Re: Running  Dummynet
Message-ID:  <3ED30DEB.3010805@401.cx>
References:  <20030524145328.16351.qmail@web13406.mail.yahoo.com> <3ECFA2E5.8020701@potentialtech.com>

next in thread | previous in thread | raw e-mail | index | archive | help
Bill Moran wrote:
> Please use reply-all to send your replies to the mailing list
> as well.
> 
> Fehmi wrote:
> 
>> ipfw show:
>> 100 allow ip from any to any
>> 200 pipe 1 bw 1kbit/s delay 200ms
>> 65554 deny ip from any to any
> 
> 
> This actually works?  It looks to me like everything should be
> blocked by the last rule: thus no networking should work.

I have to disagree. Everything will be *allowed* by the *first* rule, 
none of the other rules will ever happen, including the last one.
This is pretty much as effective as no firewall at all.

--
R



Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?3ED30DEB.3010805>