hi all,

my question is when i have a check-state in the beginning of my rules, how
can i know whether it works ?

my rule can be simplified like

000001     check-state
000002    allow all from any to any keep-state
65535     allow all from any to any


hence the rule on line 2 , it will always setup the state, so if my have a
client which trying to download things from uplink via my pfsense, the
check-state show match all the packet except the first packet only,

but the problem is how  can i know whether it it working or not , every
time i typed , ipfw show ,  the line 1 always showing me     " 000001
0    0    check-state "  that means actually no packet matched this rule ?
that sounds not good !


any comment ?  thanks in advance.

best regards
bycn82
_______________________________________________
List mailing list
[email protected]
http://lists.pfsense.org/mailman/listinfo/list

Reply via email to