{"id":13,"date":"2003-05-26T09:59:56","date_gmt":"2003-05-26T08:59:56","guid":{"rendered":"http:\/\/www.yelloworb.com\/freebsd\/?p=13"},"modified":"2003-05-26T09:59:56","modified_gmt":"2003-05-26T08:59:56","slug":"ipfw","status":"publish","type":"post","link":"https:\/\/www.yelloworb.com\/freebsd\/2003\/05\/ipfw\/","title":{"rendered":"IPFW"},"content":{"rendered":"\n<p>So I have not been able to connect with VPN to SICS from home lately so I tried to  fix that now.<\/p>\n<p>Have not been able to figure out what was wrong really but I noticed by cealring the logs in the firewall with:<\/p>\n<pre>ipfw resetlog<\/pre>\n<p>that it denied IP protocol 47(GRE) which was really strange since there is a rule to let that in and out.<\/p>\n<pre>${fwcmd} add pass gre from any to ${vpn} via ${oif}&lt;br&gt;${fwcmd} add pass gre from ${vpn} to any via ${oif}<\/pre>\n<\/p>\n<p>Though I took time to add some other new rules for mainly stopping my log to flood wiht useless information, added deny to port 135, 137, 139 and 445 all related to SMB according to <a href=\"http:\/\/www.seifried.org\/\">Kurt Seifried&#8217;s<\/a> <a href=\"http:\/\/www.seifried.org\/security\/ports\/\">ports list<\/A>.<\/p>\n<p>So I reloaded all the rules into the IPFW with:<\/p>\n<pre>sh \/etc\/ipfw.conf &gt; \/tmp\/ipfw.txt &#38;<\/pre>\n<p>and all seems to work now.<\/p>\n","protected":false},"excerpt":{"rendered":"<p>So I have not been able to connect with VPN to SICS from home lately so I tried to fix that now. Have not been able to figure out what was wrong really but I noticed by cealring the logs &hellip; <a href=\"https:\/\/www.yelloworb.com\/freebsd\/2003\/05\/ipfw\/\">Continue reading <span class=\"meta-nav\">&rarr;<\/span><\/a><\/p>\n","protected":false},"author":2,"featured_media":0,"comment_status":"open","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[6],"tags":[],"class_list":["post-13","post","type-post","status-publish","format-standard","hentry","category-network"],"_links":{"self":[{"href":"https:\/\/www.yelloworb.com\/freebsd\/wp-json\/wp\/v2\/posts\/13","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.yelloworb.com\/freebsd\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.yelloworb.com\/freebsd\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.yelloworb.com\/freebsd\/wp-json\/wp\/v2\/users\/2"}],"replies":[{"embeddable":true,"href":"https:\/\/www.yelloworb.com\/freebsd\/wp-json\/wp\/v2\/comments?post=13"}],"version-history":[{"count":0,"href":"https:\/\/www.yelloworb.com\/freebsd\/wp-json\/wp\/v2\/posts\/13\/revisions"}],"wp:attachment":[{"href":"https:\/\/www.yelloworb.com\/freebsd\/wp-json\/wp\/v2\/media?parent=13"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.yelloworb.com\/freebsd\/wp-json\/wp\/v2\/categories?post=13"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.yelloworb.com\/freebsd\/wp-json\/wp\/v2\/tags?post=13"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}