From owner-freebsd-hackers Sat Aug 12 16: 1:26 2000 Delivered-To: freebsd-hackers@freebsd.org Received: from bluerose.windmoon.nu (c255152-a.plstn1.sfba.home.com [24.176.132.48]) by hub.freebsd.org (Postfix) with ESMTP id 43BEF37BD88 for ; Sat, 12 Aug 2000 16:01:24 -0700 (PDT) (envelope-from fengyue@bluerose.windmoon.nu) Received: from localhost (fengyue@localhost) by bluerose.windmoon.nu (8.10.2/Windmoon/8.10.2) with ESMTP id e7CNGEb11221 for ; Sat, 12 Aug 2000 16:16:14 -0700 (PDT) Date: Sat, 12 Aug 2000 16:16:14 -0700 (PDT) From: FengYue To: hackers@FreeBSD.ORG Subject: Re: ipfw drop packets based on SYN &TTL In-Reply-To: <200008122146.RAA22473@etinc.com> Message-ID: MIME-Version: 1.0 Content-Type: TEXT/PLAIN; charset=US-ASCII Sender: owner-freebsd-hackers@FreeBSD.ORG Precedence: bulk X-Loop: FreeBSD.ORG On Sat, 12 Aug 2000, Dennis wrote: > At 05:34 PM 8/12/00 -0400, Bill Fumerola wrote: > >On Sat, Aug 12, 2000 at 12:03:15PM -0700, FengYue wrote: > > > >> Hi, I need to drop packets using ipfw based on the value of > >> TTL and the value of TTL on a 2.2.8-stable system. It seems > >> ipfw does not support this, what options do I have? > > Why dont you just hack the IP code? its a lot easier than upgrading. > > DB That's what I'm going to do:). Thanks people, and Bill, it's very nice that we're going to have those options in 4.x/5.x. To Unsubscribe: send mail to majordomo@FreeBSD.org with "unsubscribe freebsd-hackers" in the body of the message