From owner-freebsd-ipfw@FreeBSD.ORG Tue May 29 12:46:24 2007 Return-Path: X-Original-To: freebsd-ipfw@freebsd.org Delivered-To: freebsd-ipfw@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [69.147.83.52]) by hub.freebsd.org (Postfix) with ESMTP id 142CF16A400; Tue, 29 May 2007 12:46:24 +0000 (UTC) (envelope-from bu7cher@yandex.ru) Received: from smtp3.yandex.ru (smtp3.yandex.ru [213.180.200.14]) by mx1.freebsd.org (Postfix) with ESMTP id 2A19513C43E; Tue, 29 May 2007 12:46:22 +0000 (UTC) (envelope-from bu7cher@yandex.ru) Received: from ns.kirov.so-cdu.ru ([77.72.136.145]:1014 "EHLO [127.0.0.1]" smtp-auth: "bu7cher" TLS-CIPHER: "DHE-RSA-AES256-SHA keybits 256/256 version TLSv1/SSLv3" TLS-PEER-CN1: ) by mail.yandex.ru with ESMTP id S4748447AbXE2MqH (ORCPT + 2 others); Tue, 29 May 2007 16:46:07 +0400 X-Comment: RFC 2476 MSA function at smtp3.yandex.ru logged sender identity as: bu7cher Message-ID: <465C208D.4080205@yandex.ru> Date: Tue, 29 May 2007 16:46:05 +0400 From: "Andrey V. Elsukov" User-Agent: Mozilla Thunderbird 1.5 (FreeBSD/20051231) MIME-Version: 1.0 To: freebsd-ipfw@freebsd.org Content-Type: text/plain; charset=KOI8-R; format=flowed Content-Transfer-Encoding: 7bit Cc: Maxim Konovalov , Luigi Rizzo , Oleg Bulyzhin , Julian Elischer Subject: [ipfw][patch] manipulation with rules within a specified sets X-BeenThere: freebsd-ipfw@freebsd.org X-Mailman-Version: 2.1.5 Precedence: list List-Id: IPFW Technical Discussions List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Tue, 29 May 2007 12:46:24 -0000 Hi, All. I've wrote a small patch for the ipfw2. http://butcher.heavennet.ru/patches/kernel/ipfw_sets/ It allow use following commands: # ipfw set N show list all rules only from set N. # ipfw set N delete M delete rules with number M from set N. What you think about it? Several guys ask me for implement a "delete rules by template" (text of rule), like a cisco-way (no ). What you think about that? -- WBR, Andrey V. Elsukov