Имя пользователя:
Пароль:
 

Название темы: freeBSD 7.1 and ipfw, natd -> redirect_port
Показать сообщение отдельно

Новый участник


Сообщения: 26
Благодарности: 0

Профиль | Отправить PM | Цитировать


$cmd 010 allow all from any to any via lo0

$cmd 020 deny ip from any to 127.0.0.0/8
$cmd 030 deny ip from 127.0.0.0/8 to any

$cmd 040 allow all from any to any via $internal_if

$cmd 050 fwd 127.0.0.1,3129 tcp from $lannet to any 21,80,443,5190 out via $external_if

$cmd 060 divert natd ip from any to any in via $external_if

$cmd 070 check-state

$cmd 100 $skip udp from 192.168.110.2 to any 53 out via $external_if keep-state

$cmd 110 $skip icmp from any to any out keep-state

$cmd 120 $skip tcp from 192.168.110.3 to any out via $external_if setupe keep-state

$cmd 200 $skip all from $wanip to any out via $external_if setup keep-state

$cmd 210 deny all from 192.168.0.0/16 to any in via $external_if
$cmd 211 deny all from 172.16.0.0/12 to any in via $external_if
$cmd 212 deny all from 10.0.0.0/8 to any in via $external_if
$cmd 212 deny all from 10.0.0.0/8 to any in via $external_if
$cmd 213 deny all from 127.0.0.0/8 to any in via $external_if
$cmd 214 deny all from 0.0.0.0/8 to any in via $external_if
$cmd 215 deny all from 169.254.0.0/16 to any in $external_if
$cmd 216 deny all from 192.0.2.0/24 to any in via $external_if
$cmd 217 deny all from 204.152.64.0/23 to any in via $external_if
$cmd 218 deny all from 224.0.0.0/3 to any in via $external_if

$cmd 220 deny tcp from any to any 113 in via $external_if

$cmd 225 deny tcp from any to any 137 in via $external_if
$cmd 226 deny tcp from any to any 138 in via $external_if
$cmd 227 deny tcp from any to any 139 in via $external_if
$cmd 228 deny tcp from any to any 81 in via $external_if

$cmd 500 allow tcp from any to $wanip 5555 in via $external_if setup limit src-addr 2
$cmd 510 allow tcp from any to $wanip smtp in via $external_if setup keep-state

$cmd 510 allow all from any to any established


$cmd 550 deny log all from any to any

$cmd 570 divert natd ip from any to any out via $external_if

$cmd 580 allow ip from any to any

$cmd 999 deny log all from any to any

не получается отправить вложение

Отправлено: 14:01, 15-04-2009 | #11

Название темы: freeBSD 7.1 and ipfw, natd -> redirect_port