Hi everyone. It's me again. :-> I am very happy, I was able to install openbsd and it's my third day with it. :-) I've been trying to find an example of ipf.rules which is applicable to a ppp connection with public dynamic ip address obtained from my ISP and a lan card (ep0). I saw examples of rules but it's for static ip addresses. Can anyone give me an example which allows my private LAN to telnet,ftp, and http outside. Also, allow anyone from the untrusted (INTERNET) to view my webpages but not telnet and ftp to my openbsd box. Can you also include "keep state" :-) Can you also include icmp-type blocking please. And from here, I will study the rules you will send me. And btw, since I'm getting a public dynamic ip address, will the rules below work for ipnat assuming my lan is on network 192.168.1.0/24? map tun0 192.168.1.0/24 -> ppp0/32 proxy port ftp ftp/tcp map tun0 192.168.1.0/24 -> ppp0/32 portmap tcp/upd 10000:20000 map tun0 192.168.1.0/24 -> ppp0/32 I noticed that if I put ppp0 instead of tun0 and I issue ipnat -CF -f /etc/ipnat.rules, it hangs. But if it's something like above, it works. Thank you very much in advanced. Ronneil - [To unsubscribe, send mail to [EMAIL PROTECTED] with "unsubscribe firewalls" in the body of the message.]
