my firewall doesn't work

Max Laier max at love2party.net
Mon Oct 20 19:25:15 UTC 2008


On Monday 20 October 2008 20:25:24 Chen Xu wrote:
> 1. FreeBSD 5.3-release-p26

This is no longer supported ... and hasn't been for a long time.  There is 
absolutely no point in running this code on a firewall!  Update and report 
back if the problem still exists.

On a general note:

In order to debug a pf ruleset, you should add a log-directive to all block 
rules and watch pflog0 for blocked packets.  Then you decide if this packet 
should have passed and if so, you add a pass rule to allow that traffic (or 
track down why the rule you have in place didn't trigger).

-- 
/"\  Best regards,                      | mlaier at freebsd.org
\ /  Max Laier                          | ICQ #67774661
 X   http://pf4freebsd.love2party.net/  | mlaier at EFnet
/ \  ASCII Ribbon Campaign              | Against HTML Mail and News


More information about the freebsd-pf mailing list