Remote firewall changes, Was: Newbie Question About System Update

Aristedes Maniatis ari at ish.com.au
Wed Apr 20 06:20:56 PDT 2005


On 20/04/2005, at 6:05 AM, Scott Robbins wrote:

> (And of course the obvious--DO NOT shut down the sshd daemon.)  :)
>
> Ok, everyone who has NEVER ever made that mistake (or locked themself
> out with a firewall rule, accidentally putting it into effect before
> testing) raise their hand.  :)

Yes, that would be me. But someone taught me a great trick...the "at" 
command. So, just before you blow away your access with changes to 
ipfw, do this:

echo "ipfw add 1 pass all from any to any" at now +10 minutes

Then if all goes OK, use atq to remove the queue item. If not, wait 10 
minutes...


Ari Maniatis



-------------------------->
ish group
http://www.ish.com.au
Level 1, 30 Wilson Street Newtown 2042 Australia
phone +61 2 9550 5001   fax +61 2 9550 4001
PGP fingerprint 08 57 20 4B 80 69 59 E2  A9 BF 2D 48 C2 20 0C C8



More information about the freebsd-stable mailing list