summaryrefslogtreecommitdiffstats
path: root/etc/rc.firewall
Commit message (Collapse)AuthorAgeFilesLines
* Minor whitespace fix.obrien1999-12-041-2/+1
|
* Pass IP fragments with non-zero offset. The semantics of matchingru1999-11-041-0/+6
| | | | | | IP fragments has been changed in src/sys/netinet/ip_fw.c,v 1.78. Reminded by: "Ronald F. Guilmette" <rfg@monkeys.com>
* Add commented entry to the lo0 section inviting bridge users tonsayer1999-10-241-0/+2
| | | | enable ARP on filtering bridges.
* Allow for incoming DNS UDP queries.ru1999-10-201-0/+2
|
* Fix a typo in a comment.mpp1999-09-301-1/+1
|
* Apply a consistent style to most of the etc scripts. Particularly, usesheldonh1999-09-131-115/+138
| | | | | | | | | case instead of test where appropriate, since case allows case is a sh builtin and (as a side-effect) allows case-insensitivity. Changes discussed on freebsd-hackers. Submitted by: Doug Barton <Doug@gorean.org>
* $Id$ -> $FreeBSD$peter1999-08-271-1/+1
|
* Style clean-up:sheldonh1999-08-251-39/+39
| | | | | | | | | | | | | | | | * All variables are now embraced: ${foo} * All comparisons against some value now take the form: [ "${foo}" ? "value" ] where ? is a comparison operator * All empty string tests now take the form: [ -z "${foo}" ] * All non-empty string tests now take the form: [ -n "${foo}" ] Submitted by: jkh
* Use /etc/defaults/rc.conf everywhere, falling back to /etc/rc.confjkh1999-02-101-2/+5
| | | | as necessary (for half-assed upgrades).
* Strengthen the rules governing the 127.0.0.0/8 subnet. The previous rulesalex1998-04-251-3/+3
| | | | | | | | | | allowed external hosts to send packets to the 127.0.0.0/8 subnet on the firewall host. Renumber the lo0 rules to guarantee they appear first. PR: 6406 Submitted by: Archie Cobbs <archie@whistle.com>
* Add natd support.brian1998-04-181-1/+10
| | | | | PR: 6339 Submitted by: cdillon@wolves.k12.mo.us
* Better RFC1918 network protectionphk1998-04-151-1/+4
| | | | | | PR: 6278 Reviewed by: phk Submitted by: Ruslan Ermilov <ru@ucb.crimea.ua>
* get default firewall type from rc.confadam1998-02-101-1/+5
|
* MF22 - make firewall_type a little more robustdanny1997-10-211-9/+6
|
* Fix some problems in the rules file loading and need for modload detection.danny1997-09-181-2/+2
| | | | Found by: "James E. Housley" <housley@pr-comm.com>
* Reviewed by: msmith, alexdanny1997-09-111-44/+60
| | | | Cosmetic changes to the loading of firewall rules and lkm.
* Add inetd_flags and way of passing ipfw a configuration filejkh1997-05-051-4/+9
| | | | | | | | | (if firewall = "somefilename"). Fix typo fixes and URLs which were accidently nuked out of this file (submitted by: soil@quick.net via PR#3501). Submitted by: "Danny J. Zerkel" <dzerkel@phofarm.com>
* Update the etc world from RELENG_2_2 which is now more up-to-datejkh1997-05-031-5/+3
| | | | | | (gotta get myself -current again, this is a drag). Also-fixes-problems-noted-by: Wolfgang Helbig & Joerg Wunsch
* Typo police.alex1997-04-271-3/+5
| | | | | Added links to O'Reilly & Associates and Addison-Wesley's web sites to accompany the book recommendations.
* Bring in rc file changes from -current.jkh1997-04-271-7/+4
|
* Revert $FreeBSD$ to $Id$peter1997-02-231-1/+1
|
* Make the long-awaited change from $Id$ to $FreeBSD$jkh1997-01-141-1/+1
| | | | | | | | This will make a number of things easier in the future, as well as (finally!) avoiding the Id-smashing problem which has plagued developers for so long. Boy, I'm glad we're not using sup anymore. This update would have been insane otherwise.
* don't ask for confirmationadam1996-09-051-2/+2
|
* space typo, the shell don't like name=<space>valuewosch1996-08-191-2/+2
|
* Remove root dotfiles which did more harm than good.jkh1996-08-141-19/+31
|
* Flush out the rules before adding entries. This prevents duplicatealex1996-06-221-1/+5
| | | | | rules from appearing when switching back and forth from single to multi-user modes.
* Add another good book to the required reading.phk1996-04-121-3/+11
| | | | | | | make a couple of rules more sensible. Reviewed by: phk Submitted by: jmb
* Add skeleton firewall setup(s). Comments very welcome.phk1996-04-031-0/+133
OpenPOWER on IntegriCloud