OSEC

Neohapsis is currently accepting applications for employment. For more information, please visit our website www.neohapsis.com or email hr@neohapsis.com
 
Subject: Re: Problems with natd and simple firewall
From: Mike Hoskins (mikeadept.org)
Date: Tue Jul 25 2000 - 18:37:24 CDT


On Tue, 25 Jul 2000, Mike Hoskins wrote:

> And, along those lines... Comments on the following, please. It attempts
> to mimic 'simple' as closely as possible and use compatible terminology
> for ease of comparison.
> + ${fwcmd} add allow ip from ${oip} to any keep-state
> + ${fwcmd} add allow ip from ${inet}:{$imask} to any keep-state

Except for using 'allow' instead of rc.firewall's 'pass'. Oops. Well,
except for that, any change suggestions? If not, could this be added?

-mrh

To Unsubscribe: send mail to majordomoFreeBSD.org
with "unsubscribe freebsd-security" in the body of the message