Skip site navigation (1)Skip section navigation (2)
Date:      Sun, 27 Jan 2002 10:27:48 -0700 (MST)
From:      "M. Warner Losh" <imp@village.org>
To:        jacks@sage-american.com
Cc:        cjc@FreeBSD.ORG, nate@yogotech.com, stable@FreeBSD.ORG
Subject:   Re: Firewall config non-intuitiveness
Message-ID:  <20020127.102748.70374201.imp@village.org>
In-Reply-To: <3.0.5.32.20020127075816.01831ca0@mail.sage-american.com>
References:  <20020127014848.F23259@blossom.cjclark.org> <20020127.052626.107682843.imp@village.org> <3.0.5.32.20020127075816.01831ca0@mail.sage-american.com>

next in thread | previous in thread | raw e-mail | index | archive | help
In message: <3.0.5.32.20020127075816.01831ca0@mail.sage-american.com>
            jacks@sage-american.com writes:
: What would be wrong with booting without loading a FW script and then
: loading the rules after the boot is finished...???

Right now what I have works.  You are changing the semantics of a
security related feature of the system in such a way that after this
change what I have will not work.  I agree that your work around will
allow me to easily correct things.  However, if I fail to do so, I
open my firewall up completely.  To me, that's an unacceptible change
in the API.

Warner

To Unsubscribe: send mail to majordomo@FreeBSD.org
with "unsubscribe freebsd-stable" in the body of the message




Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?20020127.102748.70374201.imp>