Changeset 8339


Ignore:
Timestamp:
Aug 13, 2010, 5:13:20 PM (15 years ago)
Author:
richardvm
Message:

a couple applictions won't work without 'keep-state'

File:
1 edited

Legend:

Unmodified
Added
Removed
  • TabularUnified 2.0/nanobsd/nanobsd/files/etc/ipfw.sh

    r8338 r8339  
    8282
    8383# Allow anything originating from me
    84 ${fwcmd} add 4001 allow ip from me to any
     84${fwcmd} add 4001 allow ip from me to any keep-state
    8585
    8686# Allow on any interface
    8787# Allow SSH
    88 ${fwcmd} add 5001 allow tcp from any to me 22
     88${fwcmd} add 5001 allow tcp from any to me 22 keep-state
    8989
    9090# Allow on internal interface
    9191# DNS
    92 ${fwcmd} add 6001 allow ip from any to me 53 via $internalif
     92${fwcmd} add 6001 allow ip from any to me 53 via $internalif keep-state
    9393
    9494# NTP
    95 ${fwcmd} add 6002 allow udp from any to me 123 via $internalif
     95${fwcmd} add 6002 allow udp from any to me 123 via $internalif keep-state
    9696
    9797# Block anything else
    9898${fwcmd} add 65000 deny ip from any to any
    99 
Note: See TracChangeset for help on using the changeset viewer.