Skip site navigation (1)Skip section navigation (2)
Date:      Mon, 02 Aug 2004 15:34:02 GMT
From:      Mark <admin@asarian-host.net>
To:        <freebsd-questions@freebsd.org>
Subject:   One OR MORE of source and destination addresses?
Message-ID:  <200408021534.I72FY1AM004596@asarian-host.net>

next in thread | raw e-mail | index | archive | help
Color me confused. The ipfw manual says:

    limit {src-addr | src-port | dst-addr | dst-port} N
    The firewall will only allow N connections with the same set of
    parameters as specified in the rule. One or more of source and
    destination addresses and ports can be specified.

If "One or more of source and destination addresses and ports can be
specified", then I'd like to limit both the total amount of connections, as
well as per-src. Something like this:

ipfw check-state ipfw add allow tcp from any to me 25 setup limit dst-addr
32 src-addr 8

The error I get is:

"ipfw: only one of keep-state and limit is allowed"

So, how can I specify "One OR MORE of source and destination addresses" in
the rule to achieve this effect?

Thanks,

- Mark



Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?200408021534.I72FY1AM004596>