Re: firewall problem??

2004-03-02 Thread Kris Kennaway
On Tue, Mar 02, 2004 at 03:03:37AM -0700, RYAN vAN GINNEKEN wrote: Contents of my rc.conf file are included below. This machine is eventually going to be a server (sendmail bind apache samba ) for a differnt network so lots of stuff is commented out. I am new at running more than on BSD

Re: firewall problem??

2004-03-02 Thread RYAN vAN GINNEKEN
Thank you for your reply Here is my kernel config file well just the options i added do you need more of it? which samples are you refering to and how come i never had problems like this before?? options IPFIREWALL options IPFIREWALL_VERBOSE options

Re: firewall problem??

2004-03-02 Thread Kris Kennaway
On Tue, Mar 02, 2004 at 03:23:24AM -0700, RYAN vAN GINNEKEN wrote: Thank you for your reply Here is my kernel config file well just the options i added do you need more of it? which samples are you refering to and how come i never had problems like this before?? Compare to GENERIC or LINT

Re: Firewall problem

2003-11-03 Thread Toomas Aas
How does one get started on IPF... By reading the IPFilter Howto: http://www.obfuscation.org/ipf/ipf-howto.html Enjoy :-) -- Toomas Aas | [EMAIL PROTECTED] | http://www.raad.tartu.ee/~toomas/ * I take my wife everywhere, but she keeps finding her way back.

Re: Firewall problem

2003-10-01 Thread Rob Ellis
On Wed, Oct 01, 2003 at 01:18:17PM -0500, Gary wrote: I have set my firewall to firewall_type=open firewall_enable=YES and when I want to drop a specific IP, I enter it manually, it accepts it, but it does not drop the packets.. I am getting a lot of virus activity on my SMTP port 25.

RE: Firewall problem

2003-10-01 Thread Vince Hoffman
you have allow ip from any to any before your deny rules, unless my memory is seriously faulty (always possible) a packet will match that rule and never get to your deny rules. -Original Message- From: Gary [mailto:[EMAIL PROTECTED] Sent: 01 October 2003 19:18 To: FreeBSD Subject:

Re: Firewall problem

2003-10-01 Thread Andrew L. Gould
On Wednesday 01 October 2003 01:18 pm, Gary wrote: I have set my firewall to firewall_type=open firewall_enable=YES and when I want to drop a specific IP, I enter it manually, it accepts it, but it does not drop the packets.. I am getting a lot of virus activity on my SMTP port 25. So I

Re: Firewall problem

2003-10-01 Thread Micheas Herman
On Wed, 2003-10-01 at 11:18, Gary wrote: I have set my firewall to firewall_type=open firewall_enable=YES and when I want to drop a specific IP, I enter it manually, it accepts it, but it does not drop the packets.. I am getting a lot of virus activity on my SMTP port 25. So I wanted

Re: Firewall problem

2003-10-01 Thread Gary
On Wed, Oct 01, 2003 at 02:24:51PM -0400 or thereabouts, Rob Ellis wrote: On Wed, Oct 01, 2003 at 01:18:17PM -0500, Gary wrote: I am getting a lot of virus activity on my SMTP port 25. So I wanted to drop a few IP ranges/addresses.. 00100 62054 5483792 allow ip from any to any via lo0

Re: Firewall problem

2003-10-01 Thread Kevin D. Kinsey, DaleCo, S.P.
Andrew L. Gould wrote: On Wednesday 01 October 2003 01:18 pm, Gary wrote: I have set my firewall to firewall_type=open firewall_enable=YES and when I want to drop a specific IP, I enter it manually, it accepts it, but it does not drop the packets.. I am getting a lot of virus activity on my

Re: Firewall problem

2003-10-01 Thread Gary
Hello Kevin, Wednesday, October 1, 2003, 2:14:16 PM, you wrote: SP Yes, in this case, since this is ipfw, and first match wins. SP Using ipf, it's the opposite; gotta love 'Nix! ;-) Yah, really g How does one get started on IPF... IIRC, they have more ftures / context ... -- Best