On 2005-10-30 18:23, Eric F Crist <[EMAIL PROTECTED]> wrote:
>On Oct 30, 2005, at 4:41 PM, [EMAIL PROTECTED] wrote:
>> Does anyone have a good example of a firewall ruleset for a
>> wireless interface in a laptop, or a pointer to documentation?
>> I want to use IPFilter on 6.0 rc1.  I want to let all
>> connections out and keep state, but block all incoming from
>> the outside.
> 
> That ruleset is easy:
> 
> ipfw add check-state
> ipfw add allow tcp from me to any setup keep-state
> ipfw add allow tcp from any to any established
> ipfw add deny from any to me in

No, please!

If you are using "keep-state", when "allow all established" is
hardly ever a good idea.

_______________________________________________
freebsd-questions@freebsd.org mailing list
http://lists.freebsd.org/mailman/listinfo/freebsd-questions
To unsubscribe, send any mail to "[EMAIL PROTECTED]"

Reply via email to