Firewall enabling confusion.

Shaun T. Erickson ste at ste-land.com
Fri Feb 27 13:14:28 PST 2004


Ion-Mihai Tetcu wrote:

> hint:
> sysctl -a | grep ip.fw 
> for logging do:
> sysctl -w net.inet.ip.fw.verbose: 1
> sysctl -w net.inet.ip.fw.verbose_limit: 5

Ah.

> see also man ipfw, it will answer your questions.

I'm still wading through it - it's quite a long read. I'll finish before 
asking anything else. ;)

> AFAIK recompile with IPFW_DEFAUL_TO_ACCEPT, but it would be a bad thing.

I don't disagree - I just wanted to know how. It helps me to understand 
the system better. ;)

	-ste



More information about the freebsd-questions mailing list