ipfw counters

Andrew Pantyukhin infofarmer at FreeBSD.org
Mon Jan 1 06:38:25 PST 2007


On 1/1/07, Grant Peel <gpeel at thenetnow.com> wrote:
> Hi all,
>
> If I have rules like:
>
> 10215    0       0 count ip from any to 1.2.3.4 via em0
> 10215    0       0 count ip from 1.2.3.4 to any via em0
>
> in my ipfw rules, will the rules also count what is sent
> from those IPs to the localhost (127.0.0.1).?
>
> ((I am guessing NO, but wanted a second opinion).

127.0.0.1 should only be reachable via lo0, but I can
imagine a packet coming from em0 if you omit the usual
protection rules (see stock rc.firewall).


More information about the freebsd-questions mailing list