Displaying 20 results from an estimated 2000 matches similar to: "ipf question"
2004 Nov 30
1
FreeBSD bridge + filtering, BIG problem
Hi,
I'm afraid about having find a freebsd 5X security issue.
We have recently upgraded one gateway from 4.10 to 5.3... Following network
used:
 
[ISP]--xl1--[FW01]-----xl0--em0--[SR01]
                    |
                    |--fxp0--em0--[SR02]
On fw01, we have one jail.
 
So fw01 is configured as a bridge on xl1,xl0,fxp0. Services works (before
and after upgrade).
On 4.10, we used
2003 Aug 08
8
2 Questions
Hi,
Just two quick questions:
1. Would it be possible or difficult to upgrade FreeBSD 4.8 -STABLE to
   5.2 -STABLE when it comes out?
2. Which is the best for a production environment, -STABLE or -RELEASE
   Someone told me they think the latter is better because it doesn't
   require as much downtime for an upgrade.
Thanks
Joe
2006 Oct 31
0
6283314 frequent panics in ipf:fr_movequeue: NULL pointer dereference
Author: jojemann
Repository: /hg/zfs-crypto/gate
Revision: aa51fc8a43798383cb3ead8c97bcad88acd305c5
Log message:
6283314 frequent panics in ipf:fr_movequeue: NULL pointer dereference
6294902 ipfilter doesn''t recognize TCP window scale option correctly.
Files:
	update: usr/src/common/ipf/ip_state.c
2003 Apr 11
2
Ipf headers not installed per default ?
Just rebuilt and installed/world kernel: FreeBSD 4.8-STABLE #0: Fri Apr 11
14:34:37 EDT 2003
Using the latest Makefile for squid25:
# fgrep \$FreeBSD /usr/ports/www/squid/Makefile 
# $FreeBSD: ports/www/squid/Makefile,v 1.100 2003/04/09 08:31:30 adrian Exp $
Modified with:
# fgrep CONFIGURE_ARGS Makefile |fgrep -v \#
CONFIGURE_ARGS= --bindir=${PREFIX}/sbin  --sysconfdir=${PREFIX}/etc/squid \
2003 May 31
3
Packet flow through IPFW+IPF+IPNAT ?
Hi.
   On my FreeBSD 4.8 configured IPFW2+IPF+IPNAT and I use them all:
   - IPFW - traffic accounting, shaping, balancing and filtering;
   - IPFilter - policy routing;
   - IPNAT - masquerading.
   I want to know, how IP-packets flow through all of this components?
What's the path?
   incoming: IPFW Layer2 -> IPFW&Dummynet -> IPNAT -> IPFilter ?
   outgoing: IPFW Layer2 ->
2005 Apr 04
1
Strange messages in dmesg after DDoS-attack.
Dear list,
A few days ago one of my machines were attacked by a DDoS-attack using UDP
on random ports.. When I later on analyzed the logs, I found this in my
dmesg:
xl0: initialization of the rx ring failed (55)
xl0: initialization of the rx ring failed (55)
xl0: initialization of the rx ring failed (55)
I tried to find out on google what it ment, but without any luck. What
does that mean and
2003 Aug 03
1
ipfw or ipf w/stateful behavior
Hi,
first i must tell you, that my english is not the best,
i hav learned my english from manpages and documentation.
Please excuse this.
I have setted up a Box w/FreeBSD 4.7-RELEASE for connecting
to the w3 through an DSL/ATM-Connection.
Now i know the stateful handling of firewall-rules under linux
with iptables.In the second i have understand that FreeBSD comes with the
netfilter-extensions.
2003 Apr 08
2
Transparent squid (ipf)
FreeBSD 4.8-STABLE #1: Sun Apr  6 09:38:34 EDT 2003
# $FreeBSD: ports/www/squid/Makefile,v 1.99 2003/03/09 10:59:07 netchild Exp
$
...
checking if IP-Filter header files are installed... no
WARNING: Cannot find necessary IP-Filter header files
         Transparent Proxy support WILL NOT be enabled
...
I seem to recall that ipf doesn't install its includes per default any longer
? Perhaps
2004 Jan 15
2
re: hardware requirement -asterisk
Referring to my previous post about degradation of voice quality when 
having more than 2 connection.
The actual route is:
pc xlite -> local asterisk box -> iaxtel -> local asterisk
I have tried out a different situation:
pc xlite -> local asterisk box -> iaxtel
and the second connection
pc xlite -> local asterisk box -> iaxtel -> local asterisk
The same degradation
2003 Apr 30
6
how to configure a FreeBSD firewall to pass IPSec?
I have a FreeBSD box acting as a firewall and NAT gateway
I would like to set it up to transparently pass IPSec packets -- I have
an IPSec VPN client running on another machine, connecting to a remote network.
Is there a way to do this?  I can't find any hints in the man pages.
2004 Jan 14
4
re hardware requirement - asterisk
I have just checked the Openbsd box on the if interface.
fxp0: flags=8843<UP,BROADCAST,RUNNING,SIMPLEX,MULTICAST> mtu 1500
         address: 00:02:55:30:54:28
         media: Ethernet autoselect (100baseTX full-duplex)
         status: active
         inet 192.168.1.1 netmask 0xffffff00 broadcast 192.168.1.255
         inet6 fe80::202:55ff:fe30:5428%fxp0 prefixlen 64 scopeid 0x1
xl0:
2005 Jan 02
1
ArtDio IPF-2000 or Sipura SPA-841
I am looking at some lower cost phone to use with Asterisk.  What is the
ArtDio IPF-2000 or the Sipura SPA-841 like? Also, I see voipsupply.com has
an ArtDio IPF-1000 listed, is this a new or an old model? I cannot find
any information on it.
Adi
2006 Oct 11
0
RE: [Xen-ia64-devel] [IPF] Xen3.0.3 RC3 can not create VTI_domain
This issue only happened on creating VTI domain in IPF platform.
Creating IA32 or IA32E VMX domain is okay.
Best Regards,
Yongkang (Kangkang) 永康
>-----Original Message-----
>From: xen-ia64-devel-bounces@lists.xensource.com
>[mailto:xen-ia64-devel-bounces@lists.xensource.com] On Behalf Of Zhang,
>Jingke
>Sent: 2006年10月11日 16:35
>To: xen-ia64-devel@lists.xensource.com
2012 Jul 27
2
How can I use IPF function correctly?
Hi All,
I am trying to creat a simple example byusing ipf function in R, but i
could not get it succefully...I am very new to R, does anyone could help,
to instruct me about this ipf fucntion?
 Actually, this is what I mean
                  50   | 50
              ----------------------
        33.4| 28.57 | 14.29
        33.3| 23.81 | 4.762
        33.3| 9.523 | 19.05
             
2004 Jul 03
1
samba+obsd+subnets
Hello,
I'm having problems getting my samba setup to work at a little LAN i
partially maintain. I've been reading quite a lot about what I could think
of being related to my problems/setup, and I've also googled my ass off :(
So here I am, resorting to you guys in hope of help =] Sorry to say, but I
don't have much experience, and therefore I'm a bit lost at the moment. Not
2003 Nov 04
10
portupgrade and PHP
Hello,
When I run portupgrade -ra and PHP needs upgrading I am faced with 
having to select all the options I want PHP compiled with (again).  I 
hate this.
How can I continually compile PHP with the same options as the last time?
Thanks!
Rick
2003 Sep 29
4
IPFILTER_DEFAULT_BLOCK & No route to host
Hi,
After the option IPFILTER_DEFAULT_BLOCK is specified at kernel conf on FreeBSD 4.8 stable (cvsup'd
with tag RELENG_4_8), the machine cannot be ping'd by others on the same network.
In addition, the machine cannot ping itself.
ping localhost (or 127.0.0.1) -> no route to host
ping itself with its own ip address -> no route to host
The freebsd box, with an external pppoe
2003 Sep 29
4
IPFILTER_DEFAULT_BLOCK & No route to host
Hi,
After the option IPFILTER_DEFAULT_BLOCK is specified at kernel conf on FreeBSD 4.8 stable (cvsup'd
with tag RELENG_4_8), the machine cannot be ping'd by others on the same network.
In addition, the machine cannot ping itself.
ping localhost (or 127.0.0.1) -> no route to host
ping itself with its own ip address -> no route to host
The freebsd box, with an external pppoe
2008 Apr 03
5
Solaris 10 FW/IPF in a Open Solaris dom/U?
I''m wondering if Open Solaris + xVM will allow me to do the following:
I currently have 2 Solaris 10 servers sucking down electrons that I would
like to consolidate into 2 xVM instances on a Solaris 11 quad core box.
This is what it looks like:
Internet --->A sol 10 FW/Web B>---->C Sol 10 app/mail D---> local LAN
So interface A is connected to the Internet.  The FW/Web box
2006 Oct 25
1
Default login information for a ArtDio IPF-2600
Hello,
I recently purchased a ArtDio IPF-2600 phone from voipsupply.com, but they 
did not include a manual.
Does anyone know the default login information?  I have tried all of the 
common ones that I can think of. If anyone knows, it would be greatly 
appreciated. Thanks!
_________________________________________________________________
Stay in touch with old friends and meet new ones with