Skip site navigation (1)Skip section navigation (2)
Date:      Mon, 23 Oct 2000 19:57:49 -0700 (PDT)
From:      "Mike Hoskins" <mike@adept.org>
To:        Rudy <rudy@monkeybrains.net>, freebsd-net@FreeBSD.org
Subject:   Re: '/kernel: Too many dynamic rules, sorry'
Message-ID:  <20001024025749.476959EE01@snafu.adept.org>

next in thread | raw e-mail | index | archive | help
> [4] A nice feature would be the ability to extend timeouts within the
ipfw
> ruleset for specific ports.  For instance, I'd like to change the
timeout
> for my ssh connections from 5 minutes to 60 minutes. Something like:
> allow tcp from any to any 22 keep-state ack-lifetime 3600 in recv fxp0
setup

You need patches like Aaron Gifford's.  Search the security list archive
for 'ipfw patches' from around July.

-mrh


To Unsubscribe: send mail to majordomo@FreeBSD.org
with "unsubscribe freebsd-net" in the body of the message




Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?20001024025749.476959EE01>