Skip site navigation (1)Skip section navigation (2)
Date:      Sun, 19 Oct 2003 11:59:13 -0400
From:      Barney Wolff <barney@databus.com>
To:        Dan <dan@ntlbusiness.com>
Cc:        freebsd-net@freebsd.org
Subject:   Re: IPFW.
Message-ID:  <20031019155913.GA46989@pit.databus.com>
In-Reply-To: <200310191532.40136.dan@ntlbusiness.com>
References:  <200310191532.40136.dan@ntlbusiness.com>

next in thread | previous in thread | raw e-mail | index | archive | help
On Sun, Oct 19, 2003 at 03:32:40PM +0100, Dan wrote:
> Hi there.
> I hope you can help.
> I've been trying and trying for days to try and get these rules sorted, as 
> whenever they're used, my laptop (which is using my FreeBSD box as a gateway) 
> cannot access the Internet.

I suggest you put "log" on all your denies, and by ipfw -atde list
see which rules are stopping the packets.

Aside from whether the ruleset works, it seems inconsistent.  If you're
going to keep state, you should not be allowing tcp established, but
instead setting up state on setup, both ways.  btw, "pass" means allow,
did you mean "deny"?

-- 
Barney Wolff         http://www.databus.com/bwresume.pdf
I'm available by contract or FT, in the NYC metro area or via the 'Net.



Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?20031019155913.GA46989>