From owner-freebsd-security Tue Feb 26 3:33:17 2002 Delivered-To: freebsd-security@freebsd.org Received: from heresy.dreamflow.nl (dreamflow.nl [62.58.36.22]) by hub.freebsd.org (Postfix) with SMTP id 65E9E37B405 for ; Tue, 26 Feb 2002 03:33:13 -0800 (PST) Received: (qmail 33087 invoked by uid 1000); 26 Feb 2002 11:33:11 -0000 Date: Tue, 26 Feb 2002 12:33:11 +0100 From: Bart Matthaei To: "Adam@junik.lv" Cc: security@freebsd.org Subject: Re: ssh and ipfw Message-ID: <20020226123311.A31322@heresy.dreamflow.nl> References: <003101c1beb8$b196e240$06cdb6d5@junik.lv> Mime-Version: 1.0 Content-Type: multipart/signed; micalg=pgp-md5; protocol="application/pgp-signature"; boundary="EVF5PPMfhYS0aIcm" Content-Disposition: inline User-Agent: Mutt/1.2.5.1i In-Reply-To: <003101c1beb8$b196e240$06cdb6d5@junik.lv>; from adam@junik.lv on Tue, Feb 26, 2002 at 01:28:19PM +0200 Sender: owner-freebsd-security@FreeBSD.ORG Precedence: bulk List-ID: List-Archive: (Web Archive) List-Help: (List Instructions) List-Subscribe: List-Unsubscribe: X-Loop: FreeBSD.org --EVF5PPMfhYS0aIcm Content-Type: text/plain; charset=us-ascii Content-Disposition: inline Content-Transfer-Encoding: quoted-printable On Tue, Feb 26, 2002 at 01:28:19PM +0200, Adam@junik.lv wrote: > I'm using ipfw on two machines, both running FreeBSD 4.5 RELEASE. > At both machines the following rules apply: > ipfw add pass tcp from A to B 22 > ipfw add pass tcp form B to A 22 > A and B being the respective IP addresses of the machines! You want to allow established connections=20 ipfw add pass tcp from any to any established HTH. Bart --=20 Bart Matthaei bart@dreamflow.nl=20 Kiss me twice. I'm schizophrenic. --EVF5PPMfhYS0aIcm Content-Type: application/pgp-signature Content-Disposition: inline -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.0.6 (FreeBSD) Comment: For info see http://www.gnupg.org iD8DBQE8e3J3gcc6pR+tCegRAkL9AJ9NtTmCKthis4DpGFR528eXWFgLWQCgr6pr pKykfG0JU4/lMUsSKDlOnEI= =5me6 -----END PGP SIGNATURE----- --EVF5PPMfhYS0aIcm-- To Unsubscribe: send mail to majordomo@FreeBSD.org with "unsubscribe freebsd-security" in the body of the message