Skip site navigation (1)Skip section navigation (2)
Date:      Mon, 30 May 2005 12:29:17 +0200
From:      =?ISO-8859-1?Q?Sten_Daniel_S=F8rsdal?= <lists@wm-access.no>
To:        sid@merlin.com.ua
Cc:        freebsd-ipfw@freebsd.org
Subject:   Re: home ipfw
Message-ID:  <429AEAFD.2090404@wm-access.no>
In-Reply-To: <1193652258.20050528211841@merlin.com.ua>
References:  <1193652258.20050528211841@merlin.com.ua>

next in thread | previous in thread | raw e-mail | index | archive | help
sid@merlin.com.ua wrote:
> hi,
> im justmarried boy, and i ask my father, how to make best relation
> with my wife ?
> 
> his answer is...
> 
>   ipfw add allow ip from wife to me
>   ipfw add allow ip from me to wife
>   ipfw add prob 0.2 allow tcp from girlfriends talk to wife talk
>   ipfw add reset tcp from girlfriends talk to wife talk
>   ipfw add allow tcp from wife to { coworkers or girlfriends }  talk,handshake,email,icq
>   ipfw add allow tcp from { coworkers or girlfriends } to wife talk,handshake,email,icq
>   ipfw add allow tcp from father talk to me talk
>   ipfw add allow tcp from me talk to father talk
>   ipfw add prob 0.2 allow tcp from me 6-11 to girlfriends
>   ipfw add prob 0.2 allow tcp from girlfriends to me 6-11
>   ipfw add reset log ip from wife to any
>   ipfw add reset log ip from any to wife
> 
> what does it mean ?
> 
That you have a too loose ruleset when it comes to GirlfriendsF<->Wife,
Wife must be able to communcate with any and this should have been stateful!
Obtw: Co-workers<->Wife might be virtualized so that Overtime is
achieved at your own discretion.

:D
--
Sten Daniel Sørsdal



Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?429AEAFD.2090404>