kldload ipfw, with IPFIREWALL_DEFAULT_TO_ACCEPT

Stefan Esser se at freebsd.org
Mon Jul 29 11:02:46 UTC 2013


Am 29.07.2013 12:45, schrieb Karl Pielorz:
> I've got a number of 9.1 boxes, where we need to enable ipfw (by
> kldload'ing it).
> 
> I'm sure I saw a while ago a sysctl that would change the default ipfw
> config from 'deny all' to 'allow all' - even for a kldload? But I can't
> find it now.

I guess you were looking for:

	net.inet.ip.fw.default_to_accept="1"

which is a tunable to be set in /boot/loader.conf ...

Regards, STefan


More information about the freebsd-hackers mailing list