ipfw rules for low-end server??

Andras Kende andras at kende.com
Tue May 20 21:10:38 PDT 2003


Hello All,

Have PIII-450, 386Mb FreeBSD 4.8 machine as natd gateway (2 NIC) for around
100 computers.

To minimize load on the machine which would be the best options??

Should I use ipfw "dynamic" or "stateful" rules?

Also should set to kernel with: option IPFIREWALL_VERBOSE for debugging
purposes if needed
but disable logging firewall_logging=NO at rc.conf ?

I want to allow everything to go out, only 22tcp,80tcp 53udp and 25tcp
(port_forwading) to in...



Thanks,


Andras Kende




More information about the freebsd-questions mailing list