Hi,

After as bit of experimenting around with fastroute, I found that setting it
on an outbound rule was bad.  It locks up the machine.  Using it on inbound
rules seems to work as expected.

It would be great if the parser would pick this up, not allowing the ruleset to be
loaded.  Some doco to reflect this may also relieve others of needing to find out
the hard way.


A feature that might be useful to others would be to set the ttl to a defined
value, or adjust it for hiding not so capable routers.

'ttl -2'        decremnt it by 2, probably useless
'ttl 64'        re/set it to 64, hiding a variety of OSes on the network
'ttl +1'        increment it by 1, hiding this firewall and an inner or outer router
'ttl 0'         aka fastroute

cheers
Marco

Reply via email to