LOR with divert sockets

Andrea Venturoli ml.diespammer at netfence.it
Wed Feb 28 08:38:33 UTC 2007


Robert Watson wrote:

> What versions of ip_fw2.c and ip_divert.c were in use?

 From i386/6.2-RELEASE-p1, i.e.:
src/sys/netinet/ip_fw2.c,v 1.106.2.21 2006/10/10 18:39:38 bz
src/sys/netinet/ip_divert.c,v 1.113.2.2 2006/05/16 07:27:48 ps



> Also, could you let me know if you use any 
> uid/gid rules in your IPFW rule set?

Yep.

04000 allow tcp from me to any uid squid out via xl0 setup keep-state

I use this to allow squid to retrieve everything according to its own 
security settings.



> Thanks,

Thanks to you.



  bye
	av.



More information about the freebsd-net mailing list