Hi, all

I created a rule list for the host that I installed IP Filter v4.1.10
(SPARC, Solaris 9). For the inbound connection to the host, the rules
are working fine:

Pass in quick on eri0 from 10.5.95.15/32 to any
Pass in quick on eri0 from 10.5.2.30/32 to any
...
Block in quick on eri0 all

It seems working no problem.

Later I added another rule for the host itself (10.5.10.96) to go out to
the network:

Pass out quick on eri0 from 10.5.10.96/32 to any

When I restarted "ipmon", /etc/init.d/ipfboot stop and start. I saw a
message:

Set 0 now inactive
Filter sync'd

I installed the "pass out" rule as first rule. I can't figure out why it
does not work.

Can anyone help me out what I do wrong? Thanks in advance. 

By the way, is there easy way to re-read rule file after it is being
modified such as "kill -HUP pid", etc. or a command that I am not aware
of?

Ryan



This message (including any attachments) is intended
solely for the specific individual(s) or entity(ies) named
above, and may contain legally privileged and
confidential information.  If you are not the intended
recipient, please notify the sender immediately by 
replying to this message and then delete it.
Any disclosure, copying, or distribution of this message, or the taking of any 
action based on it, by other than the
intended recipient, is strictly prohibited.

Reply via email to