On Wed, Jul 30, 2003 at 12:51:32PM -0700, Julian Elischer wrote:
> 
> You are complicating things by running both ipfw and ipf.
> can you not do just one of them?

I'm not sure.  The literature I've read so far says neither firewall
does traffic shaping AND supports active FTP in a deny-by-default
setting.  If google's to be believed, the generally accepted solution is
to use ipfw2 for DUMMYNET and ipf/ipfnat for firewalling and active FTP
proxying.

The combination served me well when I was using ppp(8) to drive a serial
modem.  Now that I've switched to ADSL and PPPoE, things seem subtly
broken.  I blame the user (myself), but I haven't found a solution after
beating on the problem for several days.

-- 
Rocco Caputo - [EMAIL PROTECTED] - http://poe.perl.org/
_______________________________________________
[EMAIL PROTECTED] mailing list
http://lists.freebsd.org/mailman/listinfo/freebsd-net
To unsubscribe, send any mail to "[EMAIL PROTECTED]"

Reply via email to