Skip site navigation (1)Skip section navigation (2)
Date:      Fri, 25 Oct 2002 01:31:31 -0500
From:      Bryan Cassidy <bryanc2000@insightbb.com>
To:        Adam Weinberger <adamw@FreeBSD.ORG>
Cc:        freebsd-questions@freebsd.org
Subject:   Re: Whats the deal?
Message-ID:  <20021025013131.13ddf403.bryanc2000@insightbb.com>
In-Reply-To: <20021025062905.GC70503@vectors.cx>
References:  <20021025005639.507fd4a1.bryanc2000@insightbb.com> <20021025062905.GC70503@vectors.cx>

next in thread | previous in thread | raw e-mail | index | archive | help
On Thu, 24 Oct 2002 23:29:05 -0700
Adam Weinberger <adamw@FreeBSD.ORG> wrote:

> from ipfirewall(4):
>      There is one rule that always exists, rule number 65535.  This rule nor-
>      mally causes all packets to be dropped.  Hence, any packet which does not
>      match a lower numbered rule will be dropped.  However, a kernel compile
>      time option IPFIREWALL_DEFAULT_TO_ACCEPT allows the administrator to
>      change this fixed rule to permit everything.
> 
> - -Adam

So I should add

option IPFIREWALL_DEFAULT_TO_ACCEPT

or
option IPFIREWALL_DEFAULT_TO_ACCEPT=??

to the kernel?

To Unsubscribe: send mail to majordomo@FreeBSD.org
with "unsubscribe freebsd-questions" in the body of the message




Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?20021025013131.13ddf403.bryanc2000>