Skip site navigation (1)Skip section navigation (2)
Date:      Thu, 3 Jun 2004 17:59:23 -0500
From:      Skylar Thompson <skylar@cs.earlham.edu>
To:        "?.?.????????" <S.V.Salsky@diamondarm.ru>
Cc:        freebsd-questions@freebsd.org
Subject:   Re: ipfw: getsockopt(IP_FW_ADD): Operation not permitted
Message-ID:  <20040603225923.GC21636@quark.cs.earlham.edu>
In-Reply-To: <001001c4491e$9bfef380$5b00a8c0@brilliant.local>
References:  <001001c4491e$9bfef380$5b00a8c0@brilliant.local>

next in thread | previous in thread | raw e-mail | index | archive | help

--oJ71EGRlYNjSvfq7
Content-Type: text/plain; charset=us-ascii
Content-Disposition: inline
Content-Transfer-Encoding: quoted-printable

On Thu, Jun 03, 2004 at 09:55:27AM +0600, ?.?.???????? wrote:
>=20
> Problem is:
> =3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=
=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D
> ~# ipfw add 100 deny tcp from any to any 135-139
> ipfw: getsockopt(IP_FW_ADD): Operation not permitted
> =3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=
=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D

What securelevel are you running at? I don't think you can change your ipfw
rules if you are running in level 3.

--=20
-- Skylar Thompson (skylar@cs.earlham.edu)
-- http://www.cs.earlham.edu/~skylar/

--oJ71EGRlYNjSvfq7
Content-Type: application/pgp-signature
Content-Disposition: inline

-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.2.4 (FreeBSD)

iD8DBQFAv61Lsc4yyULgN4YRAj7KAJ453eRr1oEP5b7v/qF8t7tAkquw2ACeMv76
9h8Mqt6Ni2fJdtqHanxFxxc=
=9tKP
-----END PGP SIGNATURE-----

--oJ71EGRlYNjSvfq7--



Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?20040603225923.GC21636>