Subject: Re: NetBSD 2.0
To: Daniel Carosone <dan@geek.com.au>
From: Richard Ibbotson <richard@sheflug.co.uk>
List: port-i386
Date: 12/13/2004 00:09:24
Daniel
> ipftest doesn't look at the kernel, it's a stand-alone tool. You
> need to tell it -r rule-file, but I suspect you want to be looking
> at ipfstat -i/-o instead.
Tried 'ipftest -r /etc/ipf.conf' and found that the command line stood
still and no output was to be seen. Leads me to think that the
ipf.conf file may be wrong somewhere but since 'ipf -Fa
-f /etc/ipf.conf' works fine then I'm not sure what to make of it.
> Please make sure the version of your userland tools is in sync with
> the kernel (ipf -V).
Hmmm.... 'ipf -V' says...
ipf: IP Filter: v4.1.3 (396)
Kernel: IP Filter: v4.1.3
Running: yes
Log Flags: 0 = none set
Default: pass all, Logging: available
Active list: 0
Feature mask: 0x10a
Frustrating :)
--
Richard