Eliminating IPv6 (?)
Robert Huff
roberthuff at rcn.com
Tue Jun 18 12:15:18 UTC 2019
Ronald F. Guilmette writes:
> >Instead of messing with the system provided file you could
> >create a new one with only your own desired rules and then set
> >this rc.conf variable:
> >
> > firewall_script="/etc/rc.firewall"
>
> Actually, no, that's not how one is supposed to enable one's own set
> of ipfw ules. To do that, the Handbook (Sec. 30.4.1) says very clearly
> that one should do:
>
> firewall_enable="YES"
> firewall_type="path-to-my-rules-file"
>
> But I'm glad you brought it up. The funny thing is that even that
> doesn't work properly nowadays *or* like it used to in the past.
If this is true - haven't checked personally - then it's a bug.
(And a non-trivial one, the fact you're the first to report it
notwithstanding.)
Can you please open a bug report?
Respectfully,
Robert Huff
More information about the freebsd-net
mailing list