Skip site navigation (1)Skip section navigation (2)
Date:      Mon, 15 Dec 2014 13:14:19 -0500
From:      Lowell Gilbert <freebsd-questions-local@be-well.ilk.org>
To:        s m <sam.gh1986@gmail.com>
Cc:        freebsd-questions <freebsd-questions@freebsd.org>
Subject:   Re: can ipfw check all permit rules without search termination?
Message-ID:  <44k31seq6c.fsf@lowell-desk.lan>
In-Reply-To: <CAA_1SgF1Fa4wV0uRpOWqD1k2zUqtugbNhnDF%2Bh-HCoAn7fjsAw@mail.gmail.com> (s. m.'s message of "Mon, 15 Dec 2014 11:19:43 %2B0330")
References:  <CAA_1SgF1Fa4wV0uRpOWqD1k2zUqtugbNhnDF%2Bh-HCoAn7fjsAw@mail.gmail.com>

next in thread | previous in thread | raw e-mail | index | archive | help
s m <sam.gh1986@gmail.com> writes:

> i want to define multiple rules for ipfw. i wanna know if there is any way
> to ipfw check all permit rules without termination search until it sees and
> deny rule??? i want to search terminate only when a deny rule meet.
> is there any option or sysctl variable to doing this for me? i read ipfw
> man page but find nothing.

Why are you trying to do this?
What are you actually trying to achieve?

What you've described doesn't make sense, so you need to go back and
figure out why you're asking the wrong question.

Perhaps another firewall, like pf(4), might have syntax that makes more
sense to you?



Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?44k31seq6c.fsf>