From owner-freebsd-questions@FreeBSD.ORG Fri Nov 25 19:11:16 2005 Return-Path: X-Original-To: questions@FreeBSD.ORG Delivered-To: freebsd-questions@FreeBSD.ORG Received: from mx1.FreeBSD.org (mx1.freebsd.org [216.136.204.125]) by hub.freebsd.org (Postfix) with ESMTP id 9A6FE16A41F for ; Fri, 25 Nov 2005 19:11:16 +0000 (GMT) (envelope-from mark@antsclimbtree.com) Received: from ylpvm43.prodigy.net (ylpvm43-ext.prodigy.net [207.115.57.74]) by mx1.FreeBSD.org (Postfix) with ESMTP id 5A46D43D79 for ; Fri, 25 Nov 2005 19:11:08 +0000 (GMT) (envelope-from mark@antsclimbtree.com) Received: from pimout1-ext.prodigy.net (pimout1-int.prodigy.net [207.115.5.65]) by ylpvm43.prodigy.net (8.12.10 outbound/8.12.10) with ESMTP id jAPJB32C022088 for ; Fri, 25 Nov 2005 14:11:03 -0500 X-ORBL: [69.232.30.131] Received: from lilbuddy.antsclimbtree.com (adsl-69-232-30-131.dsl.snfc21.pacbell.net [69.232.30.131]) by pimout1-ext.prodigy.net (8.13.4 outbound domainkey aix/8.13.4) with ESMTP id jAPJAsSj244282 for ; Fri, 25 Nov 2005 14:10:59 -0500 Received: from [192.168.1.65] (helo=[192.168.1.65]) by lilbuddy.antsclimbtree.com with esmtpsa (TLSv1:RC4-SHA:128) (Exim 4.54 (FreeBSD)) id 1EfiyR-000HPs-Vt for questions@FreeBSD.ORG; Fri, 25 Nov 2005 11:11:08 -0800 Mime-Version: 1.0 (Apple Message framework v746.2) Content-Transfer-Encoding: 7bit Message-Id: <536B393F-0E66-4B10-89A7-E0D4D82C87D7@antsclimbtree.com> Content-Type: text/plain; charset=US-ASCII; delsp=yes; format=flowed To: "questions@freebsd.org" From: Mark Edwards Date: Fri, 25 Nov 2005 11:11:07 -0800 X-Mailer: Apple Mail (2.746.2) Cc: Subject: verrevpath -- ipfw: unknown argument ``not'' X-BeenThere: freebsd-questions@freebsd.org X-Mailman-Version: 2.1.5 Precedence: list List-Id: User questions List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Fri, 25 Nov 2005 19:11:16 -0000 I am trying to implement the verrevpath suggestion in the ipfw man page, as follows: > The verrevpath option could be used to do automated anti- > spoofing by > adding the following to the top of a ruleset: > > ipfw add deny ip from any to any not verrevpath in However, when I try to add the rule, I get an error: > lilbuddy:~ paimin$ ipfw add deny ip from any to any not verrevpath in > ipfw: unknown argument ``not'' Can someone tell what is causing this syntax to fail? Thanks! -- Mark Edwards