From owner-freebsd-questions@FreeBSD.ORG Thu Feb 26 11:49:57 2004 Return-Path: Delivered-To: freebsd-questions@freebsd.org Received: from mx1.FreeBSD.org (mx1.freebsd.org [216.136.204.125]) by hub.freebsd.org (Postfix) with ESMTP id 4A87616A4CE for ; Thu, 26 Feb 2004 11:49:57 -0800 (PST) Received: from spock.ste-land.com (spock.ste-land.com [64.32.179.40]) by mx1.FreeBSD.org (Postfix) with ESMTP id E4E0343D2D for ; Thu, 26 Feb 2004 11:49:56 -0800 (PST) (envelope-from ste@ste-land.com) Received: from ste-land.com (bgp377940bgs.plnfld01.nj.comcast.net [68.36.5.198]) by spock.ste-land.com (Postfix) with ESMTP id D3E4A2D24C for ; Thu, 26 Feb 2004 14:49:55 -0500 (EST) Message-ID: <403E4DE3.60103@ste-land.com> Date: Thu, 26 Feb 2004 14:49:55 -0500 From: "Shaun T. Erickson" User-Agent: Mozilla/5.0 (Windows; U; Windows NT 5.1; en-US; rv:1.4b) Gecko/20030507 X-Accept-Language: en-us, en MIME-Version: 1.0 To: freebsd-questions@freebsd.org References: In-Reply-To: Content-Type: text/plain; charset=us-ascii; format=flowed Content-Transfer-Encoding: 7bit Subject: Re: Looking for ipfw info. X-BeenThere: freebsd-questions@freebsd.org X-Mailman-Version: 2.1.1 Precedence: list List-Id: User questions List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Thu, 26 Feb 2004 19:49:57 -0000 JJB wrote: > > -----Original Message----- > From: owner-freebsd-questions@freebsd.org > [mailto:owner-freebsd-questions@freebsd.org]On Behalf Of Shaun T. > Erickson > Sent: Thursday, February 26, 2004 2:08 PM > To: Barbish3@adelphia.net > Cc: freebsd-questions@freebsd.org > Subject: Re: Looking for ipfw info. > > JJB wrote: > > >>The problem with all those links is that what they write about is >>outdated and complete mis-directs the reader into using IPFW's >>legacy stateless rules when only stateful rules should be used to >>get the max level of protection. > > > The rules she gives in her second article most certainly describe > creating a stateful firewall. > > Yes for an firewall without an lan behind it Which is exactly what I'm trying to set up. > www.a1poweruser.com Is where you can purchase the complete results > of my in-depth research, as soon as I complete the buy now button > function. Check back in a week. Can someone who isn't trying to sell me something, corroborate anything he's said? It would be nice to hear from someone else, too. :) -ste