From owner-freebsd-questions@FreeBSD.ORG Tue Mar 30 13:31:58 2010 Return-Path: Delivered-To: freebsd-questions@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2001:4f8:fff6::34]) by hub.freebsd.org (Postfix) with ESMTP id 199051065670 for ; Tue, 30 Mar 2010 13:31:58 +0000 (UTC) (envelope-from walterk1@earthlink.net) Received: from fall-pradero.atl.sa.earthlink.net (fall-pradero.atl.sa.earthlink.net [207.69.195.104]) by mx1.freebsd.org (Postfix) with ESMTP id E6A9A8FC16 for ; Tue, 30 Mar 2010 13:31:57 +0000 (UTC) Received: from pop-tawny.atl.sa.earthlink.net ([207.69.195.67]) by fall-pradero.atl.sa.earthlink.net with esmtp (Exim 4.34) id 1NwawO-0000J4-8C for freebsd-questions@freebsd.org; Tue, 30 Mar 2010 08:53:08 -0400 Received: from user-0c6sn0e.cable.mindspring.com ([24.110.92.14] helo=[192.168.0.100]) by pop-tawny.atl.sa.earthlink.net with esmtp (Exim 3.36 #1) id 1NwawD-0002Nc-00 for freebsd-questions@FreeBSD.org; Tue, 30 Mar 2010 08:52:57 -0400 Message-ID: <4BB1F429.7030407@earthlink.net> Date: Tue, 30 Mar 2010 07:52:57 -0500 From: Walter User-Agent: Mozilla/5.0 (Macintosh; U; PPC Mac OS X Mach-O; en-US; rv:1.7.2) Gecko/20040804 Netscape/7.2 X-Accept-Language: en-us, en MIME-Version: 1.0 To: Questions Content-Type: text/plain; charset=ISO-8859-1; format=flowed Content-Transfer-Encoding: 7bit Cc: Subject: Setting firewall symbolic constants X-BeenThere: freebsd-questions@freebsd.org X-Mailman-Version: 2.1.5 Precedence: list List-Id: User questions List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Tue, 30 Mar 2010 13:31:58 -0000 In the example firewall rule set in rc.firewall, there are the following lines: # set these to your outside interface network oif="$firewall_simple_oif" onet="$firewall_simple_onet" # set these to your inside interface network iif="$firewall_simple_iif" inet="$firewall_simple_inet" Can these be set by the system automatically? Specifically $firewall_simple_onet? When the IP changes on the ISP's side, I'd like to have this detected and updated in the rules without my manual intervention. Do I need to write a utility and run in crontab? Or is there a better way? I'm off-list, so please reply directly to this e-mail addy. TIA. Walter