Re: Firewalling

Richard B. Johnson (root@analogic.com)
Fri, 25 Jul 1997 08:07:05 -0400 (EDT)


On Thu, 24 Jul 1997, B. James Phillippe wrote:

> On Thu, 24 Jul 1997, Richard B. Johnson wrote:
>
> > I tried various ipfwadm commands that many persons tried to help me with.
> > None of them escaped syntax errors. Therefore, from `ipfwadm -h` I deduced
> > the following command:
> >
> > ipfwadm -F -I quark -a deny -P udp -S 204.178.40.0/21 -D 204.178.47.0/21 137:139
> > ipfwadm: setsockopt failed: Invalid argument
> >
> > Do I need new tools?
>
> Not unless your ipfwadm -h reports a version older than 2.3.0. The -F and
> "quark" don't make any sense in that command, tho. Try it like this:
>
> ipfwadm -I -a deny -P udp -S 204.178.40.0/21 -D 204.178.47.0/21 137 138

It generates an syntax error without the other stuff. '-h' doesn't report
a version number. It must be out-of-date.

Cheers,
DJ
-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-
Richard B. Johnson
Analogic Corporation
Email : rjohnson@analogic.com, johnson@analogic.com
Penguin : Linux version 2.1.44 on an i586 machine (66.15 BogoMips).
Warning : It's hard to stay on the trailing edge of technology.
-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-