Skip site navigation (1)Skip section navigation (2)
Date:      Wed, 08 Nov 2000 22:49:07 +0200
From:      Evren Yurtesen <eyurtese@turkuamk.fi>
To:        freebsd-questions@freebsd.org
Subject:   pipes,IPFW and simple question
Message-ID:  <3A09BC43.1DBA6F2E@turkuamk.fi>

next in thread | raw e-mail | index | archive | help
I have a little problem over here.
I have searched the mailing list archives but couldnt find anything
close...
I made ipfw,dummynet etc. work perfectly but need a creative idea of
the conf file I should use.

I want to limit bandwidth over an interface but also I want to use
ipfw's
firewall capabilities but the search terminates when ipfw comes to a
pipe
command.

Ok you might say that I can make ipfw continue search after pipe by
setting a variable with sysctl and I did that then the problem is that
I want users behind this host to connect to X machine without the
bandwidth limit but however I put the rules these users are caught
by the other bandwidth limit rule. I can handle this if the ipfw
terminates
the search when it finds a rule because I can put a rule about this X
machine first and another rule about the rest of the internet then I
cant
use ipfw's firewall capabilities.
I can use ipfw's skipto option to continue from another rule when the
pipe
matches but then the problem is with ipfw list numbers. I sometimes add
rules in the middle of the rules in my rc.firewall file and all the
numbers change
at the next time I reboot the firewall box.

Is this a kind of paradox? any creative ideas?

Evren



To Unsubscribe: send mail to majordomo@FreeBSD.org
with "unsubscribe freebsd-questions" in the body of the message




Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?3A09BC43.1DBA6F2E>