Skip site navigation (1)Skip section navigation (2)
Date:      Wed, 28 Jun 2000 16:26:33 +0300
From:      Boris Karnaukh <bk532@iname.com>
To:        Salvo Bartolotta <bartequi@inwind.it>
Cc:        freebsd-security@FreeBSD.ORG
Subject:   Re: icmp type 3 code 4: a couple of questions
Message-ID:  <3959FD09.145EBF61@iname.com>
References:  <20000627.14530500@bartequi.ottodomain.org>

next in thread | previous in thread | raw e-mail | index | archive | help
Salvo Bartolotta wrote:
> 
> Dear FreeBSD'ers,
> 
> I am running a paranoidly closed firewall (homebox).
> 
> Just out of curiosity, is there an *ipfw* way to allow ONLY icmp type
> 3 code 4 packets (DF), dropping all other icmp packets onto the floor

Here is quote from my ruleset:

add allow icmp from any to any in icmptypes 0,3,11,12,14,16,18
add allow icmp from any to any out

-- 
<Signed>
Boris Karnaukh 	(mailto:bk532@iname.com)


To Unsubscribe: send mail to majordomo@FreeBSD.org
with "unsubscribe freebsd-security" in the body of the message




Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?3959FD09.145EBF61>