conf/74610: Hostname resolution failure causes firewall rules to stop loading

Ceri Davies ceri at submonkey.net
Thu Dec 2 04:00:53 PST 2004


The following reply was made to PR conf/74610; it has been noted by GNATS.

From: Ceri Davies <ceri at submonkey.net>
To: Maxim Konovalov <maxim at macomnet.ru>
Cc: bug-followup at freebsd.org
Subject: Re: conf/74610: Hostname resolution failure causes firewall rules to stop loading
Date: Thu, 2 Dec 2004 11:52:15 +0000

 On Thu, Dec 02, 2004 at 02:23:29PM +0300, Maxim Konovalov wrote:
 > And what is the desired behaviour?  Loading the rest of the rules
 > might be dangerous as well.   There are "ipfw -n" and "ipfw set",
 > and check'n'load approach will solve the problem.
 
 I'm not sure - dropping to single-user would have been something.  In my
 case the machine was up with all services running and only half a
 ruleset loaded, which is not ideal.
 
 Perhaps the rules could be passed through "ipfw -n" before they are
 loaded for real.
 
 Ceri
 -- 
 Only two things are infinite, the universe and human stupidity, and I'm
 not sure about the former.			  -- Einstein (attrib.)


More information about the freebsd-bugs mailing list