Divert code

Nick Rogness nick at rogness.net
Tue Sep 16 23:00:26 PDT 2003


Without knowing much about the kernel ipfw divert code, what would it take
to make it skip the ipfw divert rule if the app that's listening on that
port dies?  Besides 'a miracle' or an 'act of god' =)  Some general ideas
or thoughts would be nice.

The reason I ask is I've added a FreeBSD divert hook into the snort_inline
code which reads from a divert socket.  If snort_inline dies, the gateway
dies (which is understandable) :-(

Thanks for your time.


Nick Rogness <nick at rogness.net>
-
  How many people here have telekenetic powers? Raise my hand.
  				-Emo Philips




More information about the freebsd-ipfw mailing list