From owner-freebsd-stable Thu May 10 9:28:50 2001 Delivered-To: freebsd-stable@freebsd.org Received: from fw.wintelcom.net (ns1.wintelcom.net [209.1.153.20]) by hub.freebsd.org (Postfix) with ESMTP id 6198337B423 for ; Thu, 10 May 2001 09:28:47 -0700 (PDT) (envelope-from bright@fw.wintelcom.net) Received: (from bright@localhost) by fw.wintelcom.net (8.10.0/8.10.0) id f4AGRw825021; Thu, 10 May 2001 09:27:58 -0700 (PDT) Date: Thu, 10 May 2001 09:27:57 -0700 From: Alfred Perlstein To: Milan Andric Cc: Cy Schubert - ITSD Open Systems Group , Sam , Freebsd-Stable Subject: Re: nfs and ipfw Message-ID: <20010510092757.N18676@fw.wintelcom.net> References: <200105101355.f4ADt4r07717@cwsys.cwsent.com> Mime-Version: 1.0 Content-Type: text/plain; charset=us-ascii Content-Disposition: inline User-Agent: Mutt/1.2.5i In-Reply-To: ; from mandric@EECS.Berkeley.EDU on Thu, May 10, 2001 at 09:10:34AM -0700 X-all-your-base: are belong to us. Sender: owner-freebsd-stable@FreeBSD.ORG Precedence: bulk X-Loop: FreeBSD.ORG * Milan Andric [010510 09:11] wrote: > > Can't you just allow udp from you nfs server ip? > in rc.firewall: > > ${fwcmd} add pass udp from ${ip} to NFS-SERVER > ${fwcmd} add pass udp from NFS-SERVER to ${ip} What about mountd, statd and lockd? -Alfred To Unsubscribe: send mail to majordomo@FreeBSD.org with "unsubscribe freebsd-stable" in the body of the message