ipfw: reset tcp
Eugene Grosbein
eugen at kuzbass.ru
Thu May 13 01:32:05 PDT 2004
Luigi Rizzo wrote:
> > When a rule 'reset tcp' matches, a kernel generates new TCP packet.
> > Will it have to go through ipfw list (from the beginning or not)?
>
> ipfw2 uses an mbuf flag to bypass the firewall - I am not sure if i
> only used it for the keepalives or also for TCP reset packets
Please check. I suspect it does not enter ipfw itself,
it is not processed by my natd and bad things happen here.
Eugene
More information about the freebsd-ipfw
mailing list