Subject: Re: ICMP acting weird in ipf 4.1.3? (netbsd-2.0_RC1)
To: Jeff Rizzo <riz@boogers.sf.ca.us>
From: Hisashi T Fujinaka <htodd@twofifty.com>
List: current-users
Date: 09/30/2004 07:58:28
On Wed, 29 Sep 2004, Hisashi T Fujinaka wrote:
... (unable to ping external interface starting a month or so ago) ...
Not working:
> pass out log level local1.info on le0 proto icmp from any to any keep state
> pass in log level local1.info quick on le0 proto icmp from any to 192.168.1.18/32
Working:
pass out log level local1.info on le0 proto icmp from any to any # keep state
pass in log level local1.info quick on le0 proto icmp from any to 192.168.1.18/32
and also:
pass out log level local1.info on le0 proto icmp from any to any keep state
pass in log level local1.info quick on le0 proto icmp from any to 192.168.1.18/32 keep state
So the question remains, what changed? The first rule used to work.
--
Hisashi T Fujinaka - htodd@twofifty.com
BSEE(6/86) + BSChem(3/95) + BAEnglish(8/95) + MSCS(8/03) + $2.50 = latte