ipfw fwd and ipfw allow

Nikos Vassiliadis nvass9573 at gmx.com
Tue Sep 7 13:43:07 UTC 2010


On 9/7/2010 2:00 PM, Victor Sudakov wrote:
> Nikos Vassiliadis wrote:
>>> Am I asking something unreasonable?
>>
>> Not really, but if you ask, one could say that IPFW is a "first
>> match wins" firewall, so a fwd or an allow action would be the
>> terminal one. You must design your rules accordingly.
>>
>> There is also the skipto action which can alter the way packets
>> flow through the rules.
>>
>> Could you describe in a conrete example what you're trying to
>> achieve?
>
> I want forwarded packets to create a dynamic "allow" rule.
>

You can combine fwd and keep-state. Could you be more specific?



More information about the freebsd-questions mailing list