ipfw question ....

Matthew Seaman matthew at FreeBSD.org
Sat Aug 9 14:15:18 UTC 2014


On 09/08/2014 15:15, William A. Mahaffey III wrote:
> Why is there a limit on the # of logged denials by ipfw ?
> 
> 
> Aug  6 18:52:20 kabini1 kernel: ipfw: limit 500 reached on entry 65500

Because otherwise someone could DoS you by causing ipfw to fill up a
partition with log messages simply by sending a stream of packets at you
over the network.

	Cheers,

	Matthew

-- 
Dr Matthew J Seaman MA, D.Phil.
PGP: http://www.infracaninophile.co.uk/pgpkey


-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 1036 bytes
Desc: OpenPGP digital signature
URL: <http://lists.freebsd.org/pipermail/freebsd-questions/attachments/20140809/0ab725ef/attachment.sig>


More information about the freebsd-questions mailing list