> >
> >pass in all
> >block in proto tcp all head 100
> >pass in proto tcp from any to any flags S keep state group 100
>
> Fantastic! Forwarded to Bugtraq.
>
> --Brett
>
I guess this is good. But the thoughts of translating 350
plus rules from ipfw to ipfilter are not too appealing.
Unless, it is possible to use both. Most of SOHO users I
know are using natd and ipfw. I fail to see how this will
be a quick fix for them.
Gene Harris
http://www.tetronsoftware.com
To Unsubscribe: send mail to majordomo@FreeBSD.org
with "unsubscribe freebsd-stable" in the body of the message