From owner-freebsd-bugs@FreeBSD.ORG Wed Dec 29 22:20:26 2004 Return-Path: Delivered-To: freebsd-bugs@hub.freebsd.org Received: from mx1.FreeBSD.org (mx1.freebsd.org [216.136.204.125]) by hub.freebsd.org (Postfix) with ESMTP id 2741E16A4CE for ; Wed, 29 Dec 2004 22:20:26 +0000 (GMT) Received: from freefall.freebsd.org (freefall.freebsd.org [216.136.204.21]) by mx1.FreeBSD.org (Postfix) with ESMTP id 0E93443D58 for ; Wed, 29 Dec 2004 22:20:26 +0000 (GMT) (envelope-from gnats@FreeBSD.org) Received: from freefall.freebsd.org (gnats@localhost [127.0.0.1]) by freefall.freebsd.org (8.13.1/8.13.1) with ESMTP id iBTMKPHj018088 for ; Wed, 29 Dec 2004 22:20:25 GMT (envelope-from gnats@freefall.freebsd.org) Received: (from gnats@localhost) by freefall.freebsd.org (8.13.1/8.13.1/Submit) id iBTMKPHq018087; Wed, 29 Dec 2004 22:20:25 GMT (envelope-from gnats) Date: Wed, 29 Dec 2004 22:20:25 GMT Message-Id: <200412292220.iBTMKPHq018087@freefall.freebsd.org> To: freebsd-bugs@FreeBSD.org From: Giorgos Keramidas Subject: Re: misc/75601: ipfilter not allowing SSH to box on FreeBSD 5.3 X-BeenThere: freebsd-bugs@freebsd.org X-Mailman-Version: 2.1.1 Precedence: list Reply-To: Giorgos Keramidas List-Id: Bug reports List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Wed, 29 Dec 2004 22:20:26 -0000 The following reply was made to PR misc/75601; it has been noted by GNATS. From: Giorgos Keramidas To: Joe Cc: bug-followup@freebsd.org Subject: Re: misc/75601: ipfilter not allowing SSH to box on FreeBSD 5.3 Date: Thu, 30 Dec 2004 00:17:11 +0200 On 2004-12-29 07:00, Joe wrote: > Ever since we upgraded out boxes from FreeBSD 5.2 to FreeBSD 5.3, we > have trouble logging in to SSH. This only occurs when we have > ipfilter on. We have port 22 opened for people to SSH to and from. > If I type ipf -D and disable ipfilter, I can SSH into the box, yet as > soon as its active, I can't get in. It does not stop with SSH either, > if I try to access a web page from the box, I can not view it or it > takes literally about an hour to load. Again, when I turn off > ipfilter, the issue goes away, and when it is turned back on, the > problem appears again. Can we see your ruleset?