Skip site navigation (1)Skip section navigation (2)
Date:      Thu, 30 Aug 2007 14:32:40 +0700
From:      "Vadim Goncharov" <vadimnuclight@tpu.ru>
To:        freebsd-ipfw@freebsd.org
Subject:   Re: getting state to work properly
Message-ID:  <optxu28qxu4fjv08@nuclight.avtf.net>
In-Reply-To: <46D66176.9020300@auckland.ac.nz>
References:  <46D66176.9020300@auckland.ac.nz>

next in thread | previous in thread | raw e-mail | index | archive | help
30.08.07 @ 13:19 Russell Fulton wrote:

> If anyone wants to have a look at the rule set I'm happy to mail it to
> them but I don't want it appearing in a public mail archive ;)

You can simply replace all your IP addresses to strings like X.X.X.X,  
Y.Y.Y.Y, Z.Z.Z.0/24 etc., and then post it here. That's nothing  
interesting in ruleset without real addresses, IMHO. Without ruleset it's  
possible to give only the most general advices, like remembering packet  
flow (always in and out, two passes), check-state, rule ordering, and so  
on.

-- 
WBR, Vadim Goncharov



Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?optxu28qxu4fjv08>