Skip site navigation (1)Skip section navigation (2)
Date:      Wed, 17 Sep 2003 00:06:43 -0600 (MDT)
From:      Nick Rogness <nick@rogness.net>
To:        freebsd-ipfw@freebsd.org
Subject:   Divert code
Message-ID:  <20030916235808.X92689-100000@skywalker.rogness.net>

next in thread | raw e-mail | index | archive | help

Without knowing much about the kernel ipfw divert code, what would it take
to make it skip the ipfw divert rule if the app that's listening on that
port dies?  Besides 'a miracle' or an 'act of god' =)  Some general ideas
or thoughts would be nice.

The reason I ask is I've added a FreeBSD divert hook into the snort_inline
code which reads from a divert socket.  If snort_inline dies, the gateway
dies (which is understandable) :-(

Thanks for your time.


Nick Rogness <nick@rogness.net>
-
  How many people here have telekenetic powers? Raise my hand.
  				-Emo Philips




Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?20030916235808.X92689-100000>