Skip site navigation (1)Skip section navigation (2)
Date:      Mon, 14 Jun 2004 09:06:15 -0600
From:      Jose Hidalgo Herrera <jose@hostarica.com>
To:        Barbish3@adelphia.net
Cc:        jose@hostarica.com
Subject:   Re: Does keep-state work on ICMP protocol
Message-ID:  <1087225575.23828.4.camel@jose.hostarica.net>
In-Reply-To: <MIEPLLIBMLEEABPDBIEGOEEEGCAA.Barbish3@adelphia.net>
References:  <MIEPLLIBMLEEABPDBIEGOEEEGCAA.Barbish3@adelphia.net>

Next in thread | Previous in thread | Raw E-Mail | Index | Archive | Help
On Sun, 2004-06-13 at 12:24, JJB wrote:

> Does keep-state option work on an ICMP protocol rule?
> 
> If not, shouldn't an syntax error be issued?
> 


Yes it works, 
I can see the dynamic rules:

sh# ipfw -d show | grep icmp

00092  447601   36833705 allow icmp from any to any keep-state icmptype
0,3,5,8,11

00092 57895 4862580 (T 4, slot 20) <-> icmp, xx.xx.xx.xx 0<->
xx.xx.xx.xx 0
00092 0 0 (T 4, slot 59) <-> icmp, xx.xx.xx.xx 0<-> xx.xx.xx.xx 0



> 
> _______________________________________________
> freebsd-ipfw@freebsd.org mailing list
> http://lists.freebsd.org/mailman/listinfo/freebsd-ipfw
> To unsubscribe, send any mail to "freebsd-ipfw-unsubscribe@freebsd.org"

Jose Hidalgo
PGP: 15524480
jose at hostarica.com



Want to link to this message? Use this URL: <http://docs.FreeBSD.org/cgi/mid.cgi?1087225575.23828.4.camel>