ipfw forward problem

2006-09-12 Thread freebsd
Hello all I'm confused a bit. Here's what I have: a firewall (with address A) and a proxy host (in internal network) with address B. Both running latest FBSD 6.1-stable. Addresses are (samples) "A" -192.168.0.1 and "B" - 192.168.0.2. Both kernel are compiled with options "ipfirewall" and "ipfir

Re: maximum deny entries?

2006-09-12 Thread Andrey V. Elsukov
Jin Guojun [VFFS] wrote: I am not sure if this is a bug or is there some limitation for total deny entry, when the deny list exceeds a certain length (36 lines at this case), ipfw stop working (see the *** line below). # ipfw list ...all non deny entries are removed 00361 deny ip from 202.124.17

Re: maximum deny entries?

2006-09-12 Thread Freddie Cash
On Tue, September 12, 2006 5:40 pm, Jin Guojun [VFFS] wrote: > I am not sure if this is a bug or is there some limitation for total > deny entry, when the deny list exceeds a certain length (36 lines at > this case), ipfw stop working (see the *** line below). > > This is on 6.1-R i386 platform. >

Re: maximum deny entries?

2006-09-12 Thread Freddie Cash
On Tue, September 12, 2006 5:40 pm, Jin Guojun [VFFS] wrote: > I am not sure if this is a bug or is there some limitation for total > deny entry, when the deny list exceeds a certain length (36 lines at > this case), ipfw stop working (see the *** line below). > > This is on 6.1-R i386 platform. >

maximum deny entries?

2006-09-12 Thread Jin Guojun [VFFS]
I am not sure if this is a bug or is there some limitation for total deny entry, when the deny list exceeds a certain length (36 lines at this case), ipfw stop working (see the *** line below). This is on 6.1-R i386 platform. Is there know problem on this issue? or Did I made some mistake? Plea