"established" on { tcp or udp } rules

Julian Elischer julian at elischer.org
Wed Mar 19 13:47:55 PDT 2008


Freddie Cash wrote:
> Just curious if the following rule will work correctly.  It is accepted by 
> the ipfw command.  In the process of working out a test for it, but 
> thought I'd ask here as well, just to be sure.
> 
> ipfw add { tcp or udp } from me     to any 53 out xmit fxp0
> ipfw add { tcp or udp } from any 53 to me     in  recv fxp0 established
> 
> Will the UDP packets go through correctly, even though "established" has 
> no meaning for UDP streams, and the ipfw command will barf if you use it 
> with just "ipfw add udp" rules?
> 

well, an action to do would be good..
  as for the question of whether UDP ... established evaluates to true 
or false, I would guess false but you'll have to test.



More information about the freebsd-net mailing list