Skip site navigation (1)Skip section navigation (2)
Date:      Mon, 2 Jan 2006 12:33:03 -0200
From:      AT Matik <asstec@matik.com.br>
To:        G Bryant <bsd@roamingsolutions.net>
Cc:        freebsd-ipfw@freebsd.org
Subject:   Re: route selection and ipfw forwarding
Message-ID:  <200601021233.03377.asstec@matik.com.br>
In-Reply-To: <43B92D07.9010203@roamingsolutions.net>
References:  <43B875FD.6000102@gmail.com> <200601021121.49433.asstec@matik.com.br> <43B92D07.9010203@roamingsolutions.net>

next in thread | previous in thread | raw e-mail | index | archive | help
On Monday 02 January 2006 11:39, G Bryant wrote:
>
>
>
>  Thank you for your input, but this setup is currently working correctly.


how do you do it? with make buildwonderworld? :)


>  This is a bit off the original topic though.
>  Do you have any specific questions I can help you with?
>

your whole ruleset probably does not work, you only get traffic in and out =
for=20
other reasons

your clients are able to get traffic because you certainly only deny traffi=
c=20
from inexistent IPs

so first you permit any on the inside interface
then you divert
then you do not not deny any traffic on the outside for the IP it really co=
mes=20
from and skip and skip but do not limit anything else than not existing=20
traffic

so probably you get counters then only on your rule 8960 and 8990


Jo=E3o









A mensagem foi scaneada pelo sistema de e-mail e pode ser considerada segura.
Service fornecido pelo Datacenter Matik  https://datacenter.matik.com.br



Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?200601021233.03377.asstec>