Skip site navigation (1)Skip section navigation (2)
Date:      Tue, 11 Oct 2016 21:30:13 +0000
From:      bugzilla-noreply@freebsd.org
To:        freebsd-doc@FreeBSD.org
Subject:   [Bug 213394] Wrong Firewall Rule for IPSEC Configuration
Message-ID:  <bug-213394-9@https.bugs.freebsd.org/bugzilla/>

next in thread | raw e-mail | index | archive | help
https://bugs.freebsd.org/bugzilla/show_bug.cgi?id=3D213394

            Bug ID: 213394
           Summary: Wrong Firewall Rule for IPSEC Configuration
           Product: Documentation
           Version: Latest
          Hardware: Any
                OS: Any
            Status: New
          Severity: Affects Some People
          Priority: ---
         Component: Documentation
          Assignee: freebsd-doc@FreeBSD.org
          Reporter: riedinger@sns.eu

In section "13.7. VPN over IPsec" it is written that you shall configure the
Firewall rule "ipfw add 00204 allow log udp from any 500 to any". This opens
the Firewall for all incoming udp packets if the source port 500 is used. I
don't have much expirience with the IPSEC configuration, but because if the
instructions, which follow for the pf or ipf users I assume the correct rul=
e is
 "ipfw add 00204 allow log udp from any 500 to any".

--=20
You are receiving this mail because:
You are the assignee for the bug.=



Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?bug-213394-9>