Skip site navigation (1)Skip section navigation (2)
Date:      Mon, 14 May 2001 18:07:02 +0530 (IST)
From:      root <root@apsara.barc.ernet.in>
To:        <freebsd-security@FreeBSD.org>
Subject:   ipfw rules and securelevel
Message-ID:  <Pine.LNX.4.33.0105141802230.18115-100000@apsara.barc.ernet.in>

next in thread | raw e-mail | index | archive | help

Dear friends,
	Even in securelevel 3 I can bypass ipfw rules. In securelevel 3 I
as root can change the variable "net.inet.ip.fw.enable" using sysctl. When
I run a command

	sysctl -w net.inet.ip.fw.enable=0

	It disables the ipfw rules.

Is it a feature or hole in freebsd.


please help

RS


To Unsubscribe: send mail to majordomo@FreeBSD.org
with "unsubscribe freebsd-security" in the body of the message




Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?Pine.LNX.4.33.0105141802230.18115-100000>