[Bug 213394] Wrong Firewall Rule for IPSEC Configuration

bugzilla-noreply at freebsd.org bugzilla-noreply at freebsd.org
Tue Oct 11 21:30:13 UTC 2016


https://bugs.freebsd.org/bugzilla/show_bug.cgi?id=213394

            Bug ID: 213394
           Summary: Wrong Firewall Rule for IPSEC Configuration
           Product: Documentation
           Version: Latest
          Hardware: Any
                OS: Any
            Status: New
          Severity: Affects Some People
          Priority: ---
         Component: Documentation
          Assignee: freebsd-doc at FreeBSD.org
          Reporter: riedinger at sns.eu

In section "13.7. VPN over IPsec" it is written that you shall configure the
Firewall rule "ipfw add 00204 allow log udp from any 500 to any". This opens
the Firewall for all incoming udp packets if the source port 500 is used. I
don't have much expirience with the IPSEC configuration, but because if the
instructions, which follow for the pf or ipf users I assume the correct rule is
 "ipfw add 00204 allow log udp from any 500 to any".

-- 
You are receiving this mail because:
You are the assignee for the bug.


More information about the freebsd-doc mailing list