From owner-freebsd-questions Fri Feb 18 14: 7:57 2000 Delivered-To: freebsd-questions@freebsd.org Received: from mx2.x-treme.gr (mx2.x-treme.gr [212.120.192.15]) by hub.freebsd.org (Postfix) with ESMTP id E955C37BA96 for ; Fri, 18 Feb 2000 14:07:48 -0800 (PST) (envelope-from keramida@diogenis.ceid.upatras.gr) Received: from hades.hell.gr (pat17.x-treme.gr [212.120.197.209]) by mx2.x-treme.gr (8.9.3/8.9.3/IPNG-ADV-ANTISPAM-0.1) with SMTP id AAA24508 for ; Sat, 19 Feb 2000 00:07:39 +0200 Received: (qmail 7024 invoked by uid 1001); 18 Feb 2000 13:38:25 -0000 Date: Fri, 18 Feb 2000 15:38:25 +0200 From: Giorgos Keramidas To: Sabre Cc: FreeBSD Question List Subject: Re: Quick IPFW rule help... Message-ID: <20000218153825.A6630@hades.hell.gr> Reply-To: keramida@ceid.upatras.gr References: Mime-Version: 1.0 Content-Type: text/plain; charset=us-ascii X-Mailer: Mutt 1.0i In-Reply-To: ; from sabre@sabresdomain.com on Wed, Feb 16, 2000 at 09:38:33PM -0500 X-PGP-Fingerprint: 62 45 D1 C9 26 F9 95 06 D6 21 2A C8 8C 16 C0 8E X-Phone-Number: +30-94-6203692, +30-93-2886457 X-Address: Theodorou Kirinaiou 61, 26334 Patra, Greece Sender: owner-freebsd-questions@FreeBSD.ORG Precedence: bulk X-Loop: FreeBSD.ORG On Wed, Feb 16, 2000 at 09:38:33PM -0500, Sabre wrote: > Hey all, I was going to play NoX on Westwoods internet servers, but > descovered that I need to have udp ports 17590-17599 open for it. So I > added the following rule: > > $fwcmd add pass udp from any to any 17590-17599 in recv ${oif} setup This way you allow anyone to send udp packets *to* you, but your replies will almost surely be dropped, unless a logically opposite rule allow them through. Use: $fwcmd add pass udp from any to any 17590-17599 in recv ${oif} $fwcmd add pass udp from any 17590-17599 to any out xmit ${oif} -- Giorgos Keramidas, < keramida @ ceid . upatras . gr > For my public PGP key: finger keramida@diogenis.ceid.upatras.gr PGP fingerprint, phone and address in the headers of this message. To Unsubscribe: send mail to majordomo@FreeBSD.org with "unsubscribe freebsd-questions" in the body of the message