From owner-freebsd-questions@FreeBSD.ORG Tue Aug 31 19:21:02 2004 Return-Path: Delivered-To: freebsd-questions@freebsd.org Received: from mx1.FreeBSD.org (mx1.freebsd.org [216.136.204.125]) by hub.freebsd.org (Postfix) with ESMTP id D125016A4D8 for ; Tue, 31 Aug 2004 19:21:02 +0000 (GMT) Received: from smtpout.mac.com (smtpout.mac.com [17.250.248.47]) by mx1.FreeBSD.org (Postfix) with ESMTP id B9F7243D5D for ; Tue, 31 Aug 2004 19:21:02 +0000 (GMT) (envelope-from cswiger@mac.com) Received: from mac.com (smtpin08-en2 [10.13.10.153]) by smtpout.mac.com (8.12.6/MantshX 2.0) with ESMTP id i7VJL2mL022369; Tue, 31 Aug 2004 12:21:02 -0700 (PDT) Received: from [192.168.1.6] (pool-68-160-193-218.ny325.east.verizon.net [68.160.193.218]) (authenticated bits=0)i7VJKjd2015395; Tue, 31 Aug 2004 12:20:50 -0700 (PDT) In-Reply-To: <001f01c48f74$aa00e460$0401a8c0@SteveWindows> References: <001f01c48f74$aa00e460$0401a8c0@SteveWindows> Mime-Version: 1.0 (Apple Message framework v619) Content-Type: text/plain; charset=US-ASCII; format=flowed Message-Id: Content-Transfer-Encoding: 7bit From: Charles Swiger Date: Tue, 31 Aug 2004 15:20:44 -0400 To: Steve Quezadas X-Mailer: Apple Mail (2.619) cc: freebsd-questions@freebsd.org Subject: Re: Mac filtering with ipfw2 X-BeenThere: freebsd-questions@freebsd.org X-Mailman-Version: 2.1.1 Precedence: list List-Id: User questions List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Tue, 31 Aug 2004 19:21:03 -0000 On Aug 31, 2004, at 12:07 PM, Steve Quezadas wrote: > I basically want to allow traffic to come from one mac address. I am > trying to get the following rule to work: > > ipfw add accept tcp from any to any MAC any 10:20:30:40:50:60 OK, that looks about right. > Yes, ipfw2 is on my freebsd system. This rule is basically: "allow > traffic from mac address 10:20:30:40:50:60 to anywhere on the > network". > > What am I doing wrong? Dunno. You've told us what you want to do, but you haven't told us what the problem is that you are having. If you add the log keyword to your rules, you might have a better shot at seeing what they are doing; also look at "ipfw -a list". -- -Chuck