maximum deny entries?

Freddie Cash fcash at ocis.net
Tue Sep 12 21:07:17 PDT 2006


On Tue, September 12, 2006 5:40 pm, Jin Guojun [VFFS] wrote:
> I am not sure if this is a bug or is there some limitation for total
> deny entry, when the deny list exceeds a certain length (36 lines at
> this case), ipfw stop working (see the *** line below).
>
> This is on 6.1-R i386 platform.
> Is there know problem on this issue? or Did I made some mistake?
>
> Please CC to me since I am not on the list.

Works fine here, with 62 deny rules out of 533 rules in total.  While
not every deny rule has a matched packet so far, the rules under them
all work fine.

----
Freddie Cash
fcash at ocis.net



More information about the freebsd-ipfw mailing list