Skip site navigation (1)Skip section navigation (2)
Date:      Mon, 19 Sep 2005 23:20:09 +0200
From:      =?ISO-8859-1?Q?Erik_N=F8rgaard?= <norgaard@locolomo.org>
To:        jonas <jonas.de.buhr@gmx.net>
Cc:        freebsd-questions@freebsd.org
Subject:   Re: problem with IPF rules - (problem solved but i'm still confused)
Message-ID:  <432F2B89.9000305@locolomo.org>
In-Reply-To: <20050919193553.25dd0afd@localhost>
References:  <20050919172642.45408cf9@localhost> <432EDE1D.2050107@locolomo.org>	<20050919192954.6ac0e9a9@localhost> <20050919193553.25dd0afd@localhost>

next in thread | previous in thread | raw e-mail | index | archive | help
jonas wrote:
> adding a 'keep state' to the 'pass in'-rules solved this problem.
> but i still do not understand why it didn't work before, because
> outgoing traffic was allowed with
> "pass out quick on ng0 from any to any keep state"
> i'ld really prefer to know what's going on there :)
> 
> any ideas?

It would help if you would post your ruleset and not the readout, it's 
easier to read. Secondly, it is posible to compile ipf with default 
block - post the default action also.

Cheers, Erik


-- 
Ph: +34.666334818                           web: http://www.locolomo.org
S/MIME Certificate: http://www.locolomo.org/crt/2004071206.crt
Subject ID:  A9:76:7A:ED:06:95:2B:8D:48:97:CE:F2:3F:42:C8:F2:22:DE:4C:B9
Fingerprint: 4A:E8:63:38:46:F6:9A:5D:B4:DC:29:41:3F:62:D3:0A:73:25:67:C2



Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?432F2B89.9000305>