Skip site navigation (1)Skip section navigation (2)
Date:      Tue, 20 May 2003 21:10:34 -0700
From:      Andras Kende <andras@kende.com>
To:        freebsd-questions@freebsd.org
Subject:   ipfw rules for low-end server??
Message-ID:  <EGEDIDPPMCIONDEPOLNFOEDMCLAA.andras@kende.com>

next in thread | raw e-mail | index | archive | help
Hello All,

Have PIII-450, 386Mb FreeBSD 4.8 machine as natd gateway (2 NIC) for around
100 computers.

To minimize load on the machine which would be the best options??

Should I use ipfw "dynamic" or "stateful" rules?

Also should set to kernel with: option IPFIREWALL_VERBOSE for debugging
purposes if needed
but disable logging firewall_logging=NO at rc.conf ?

I want to allow everything to go out, only 22tcp,80tcp 53udp and 25tcp
(port_forwading) to in...



Thanks,


Andras Kende




Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?EGEDIDPPMCIONDEPOLNFOEDMCLAA.andras>