Skip site navigation (1)Skip section navigation (2)
Date:      Mon, 20 Oct 2008 21:25:12 +0200
From:      Max Laier <max@love2party.net>
To:        freebsd-pf@freebsd.org
Subject:   Re: my firewall doesn't work
Message-ID:  <200810202125.12758.max@love2party.net>
In-Reply-To: <184b087c0810201125y20714aa9y276d26a9e7e8a3b1@mail.gmail.com>
References:  <184b087c0810201125y20714aa9y276d26a9e7e8a3b1@mail.gmail.com>

next in thread | previous in thread | raw e-mail | index | archive | help
On Monday 20 October 2008 20:25:24 Chen Xu wrote:
> 1. FreeBSD 5.3-release-p26

This is no longer supported ... and hasn't been for a long time.  There is 
absolutely no point in running this code on a firewall!  Update and report 
back if the problem still exists.

On a general note:

In order to debug a pf ruleset, you should add a log-directive to all block 
rules and watch pflog0 for blocked packets.  Then you decide if this packet 
should have passed and if so, you add a pass rule to allow that traffic (or 
track down why the rule you have in place didn't trigger).

-- 
/"\  Best regards,                      | mlaier@freebsd.org
\ /  Max Laier                          | ICQ #67774661
 X   http://pf4freebsd.love2party.net/  | mlaier@EFnet
/ \  ASCII Ribbon Campaign              | Against HTML Mail and News



Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?200810202125.12758.max>