Date: Thu, 30 Aug 2007 14:32:40 +0700 From: "Vadim Goncharov" <vadimnuclight@tpu.ru> To: freebsd-ipfw@freebsd.org Subject: Re: getting state to work properly Message-ID: <optxu28qxu4fjv08@nuclight.avtf.net> In-Reply-To: <46D66176.9020300@auckland.ac.nz> References: <46D66176.9020300@auckland.ac.nz>
next in thread | previous in thread | raw e-mail | index | archive | help
30.08.07 @ 13:19 Russell Fulton wrote: > If anyone wants to have a look at the rule set I'm happy to mail it to > them but I don't want it appearing in a public mail archive ;) You can simply replace all your IP addresses to strings like X.X.X.X, Y.Y.Y.Y, Z.Z.Z.0/24 etc., and then post it here. That's nothing interesting in ruleset without real addresses, IMHO. Without ruleset it's possible to give only the most general advices, like remembering packet flow (always in and out, two passes), check-state, rule ordering, and so on. -- WBR, Vadim Goncharov
Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?optxu28qxu4fjv08>