From owner-freebsd-ipfw@FreeBSD.ORG Fri Dec 26 13:35:06 2003 Return-Path: Delivered-To: freebsd-ipfw@freebsd.org Received: from mx1.FreeBSD.org (mx1.freebsd.org [216.136.204.125]) by hub.freebsd.org (Postfix) with ESMTP id D033616A4CE for ; Fri, 26 Dec 2003 13:35:06 -0800 (PST) Received: from hirsch.in-berlin.de (hirsch.in-berlin.de [192.109.42.6]) by mx1.FreeBSD.org (Postfix) with ESMTP id C3F1B43D49 for ; Fri, 26 Dec 2003 13:35:03 -0800 (PST) (envelope-from bs@dva.in-berlin.de) X-Envelope-From: bs@dva.in-berlin.de X-Envelope-To: Received: from hirsch.in-berlin.de (localhost [127.0.0.1]) hBQLZ1u4031262 (version=TLSv1/SSLv3 cipher=DHE-RSA-AES256-SHA bits=256 verify=NOT) for ; Fri, 26 Dec 2003 22:35:01 +0100 Received: (from uucp@localhost)hBQLZ1hv031258 for freebsd-ipfw@freebsd.org; Fri, 26 Dec 2003 22:35:01 +0100 Received: from dva.intranet.local (dva.intranet.local [10.0.0.10]) by dva.in-berlin.de (Postfix) with ESMTP id 793E628620 for ; Fri, 26 Dec 2003 22:29:55 +0100 (CET) From: Boris Staeblow To: freebsd-ipfw@freebsd.org Date: Fri, 26 Dec 2003 22:29:55 +0100 User-Agent: KMail/1.5.4 MIME-Version: 1.0 Content-Type: text/plain; charset="iso-8859-1" Content-Transfer-Encoding: 8bit Content-Disposition: inline Message-Id: <200312262229.55270.bs@dva.in-berlin.de> X-Scanned-By: MIMEDefang 2.38 Subject: need testers for a ipfw rule generation script! X-BeenThere: freebsd-ipfw@freebsd.org X-Mailman-Version: 2.1.1 Precedence: list List-Id: IPFW Technical Discussions List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Fri, 26 Dec 2003 21:35:07 -0000 Hello, I need some testers for a ipfw rule generation script. Because I have to administer some dialup internet-routers based on FreeBSD I ´ve written this script to simplify the ipfw rule maintainance. Many rules are collected from serval FreeBSD forums, HOWTO´S and man-pages. here is the README: FIRE V1.07, 23 Dec. 2003, first public release ---------------------------------------------- The "fire" script creates a set of ipfw rules dynamically, depending of the settings in the main configuration file. Although this script is flexible, the main target is a single local network with internet-access over an internet-connected device (usually tunX from ppp) - Of course I`m grateful for improvements, as I´m not a firewall and script expert! - Forgive any mistake in writing. - DO NOT TRUST THE RESULTING IPFW-RULES BLINDLY!!! CHECK RULES WITH "ipfw list"! - USE THIS SCRIPT AT YOUR OWN RISK! - Send comments, suggestions and diff´s to bs at dva.in-berlin.de :) download the latest version at http://dva.dyndns.org Boris