doc/ja_JP.eucJP/articles/dialup-firewall/article.sgml

347 lines
13 KiB
Text
Raw Normal View History

<!--
The FreeBSD Documentation Project
The FreeBSD Japanese Documentation Project
Original revision: 1.39
$FreeBSD$
-->
<!--
<EFBFBD><EFBFBD>:
<EFBFBD><EFBFBD><EFBFBD><EFBFBD> rushani@bl.mmtr.or.jp
-->
<!DOCTYPE article PUBLIC "-//FreeBSD//DTD DocBook V4.1-Based Extension//EN" [
<!ENTITY % articles.ent PUBLIC "-//FreeBSD//ENTITIES DocBook FreeBSD Articles Entity Set//EN">
%articles.ent;
]>
<article>
<articleinfo>
<title>FreeBSD <20>ˤ<EFBFBD><CBA4><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD>å׼<C3A5><D7BC>ե<EFBFBD><D5A5><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD>ι<EFBFBD><CEB9><EFBFBD></title>
<authorgroup>
<author>
<firstname>Marc</firstname>
<surname>Silver</surname>
<affiliation>
<address><email>marcs@draenor.org</email></address>
</affiliation>
</author>
</authorgroup>
<pubdate>$FreeBSD$</pubdate>
<legalnotice id="trademarks" role="trademarks">
&tm-attrib.freebsd;
&tm-attrib.general;
</legalnotice>
<abstract>
<para>
<20><><EFBFBD>ε<EFBFBD><CEB5><EFBFBD><EFBFBD><EFBFBD> FreeBSD <20><> PPP <20><><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD>åפ<C3A5> IPFW
<20><><EFBFBD>Ѥ<EFBFBD><D1A4>ʤ<EFBFBD><CAA4><EFBFBD><EFBFBD>ɤΤ<CEA4>˥ե<CBA5><D5A5><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD>򥻥åȥ<C3A5><C8A5>åפ<C3A5><D7A4><EFBFBD><EBA4AB>
<09>ä<EFBFBD>ưŪ<C6B0>˳<EFBFBD><CBB3><EFBFBD><EFBFBD><EFBFBD><EFBFBD>Ƥ<EFBFBD><C6A4>줿
IP <20><><EFBFBD>ɥ쥹<C9A5>ˤ<EFBFBD><CBA4><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD>å׾<C3A5><D7BE>Υե<CEA5><D5A5><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD>ˤĤ<CBA4><C4A4>ơ<EFBFBD>
<09><><EFBFBD>¤򸵤˾ܺ٤<DCBA><D9A4><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD>ޤ<EFBFBD><DEA4><EFBFBD>
<09>ʤ<EFBFBD><CAA4><EFBFBD><EFBFBD>Ϥ<EFBFBD><CFA4>ˤ<EFBFBD><CBA4>ʤ<EFBFBD><CAA4><EFBFBD><EFBFBD>Фʤ<D0A4><CAA4>ʤ<EFBFBD> PPP <20><>³<EFBFBD><C2B3><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD>ˤĤ<CBA4><C4A4>ƤϿ<C6A4><CFBF><EFBFBD><EFBFBD><EFBFBD>
<09><><EFBFBD>ޤ<EFBFBD><DEA4><EFBFBD><EFBFBD><EFBFBD>PPP <20><>³<EFBFBD><C2B3><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD>ˤĤ<CBA4><C4A4>ƾܤ<C6BE><DCA4><EFBFBD><EFBFBD><EFBFBD><EFBFBD>Ȥϡ<C8A4>&man.ppp.8; <20>Υ<EFBFBD>
<09>˥奢<CBA5><E5A5A2><EFBFBD>򻲹ͤˤ<CDA4><CBA4>Ƥ<EFBFBD><C6A4><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD></para>
</abstract>
</articleinfo>
<sect1 id="preface">
<title><3E><>ʸ</title>
<para>FreeBSD <20>ˤ<EFBFBD><CBA4><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD>å׼<C3A5><D7BC>ե<EFBFBD><D5A5><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD>ι<EFBFBD><CEB9><EFBFBD></para>
<para>
<20><><EFBFBD><EFBFBD>ʸ<EFBFBD><CAB8><EFBFBD>Ϥ<EFBFBD><CFA4>ʤ<EFBFBD><CAA4><EFBFBD> ISP <20>ˤ<EFBFBD><CBA4>ä<EFBFBD>
IP <20><><EFBFBD>ɥ쥹<C9A5><ECA5B9>ưŪ<C6B0>˳<EFBFBD><CBB3><EFBFBD><EFBFBD><EFBFBD><EFBFBD>Ƥ<EFBFBD><C6A4><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD>ˡ<EFBFBD>FreeBSD <20><>
<20>ե<EFBFBD><D5A5><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EAA4B9><EFBFBD>Τ<EFBFBD>ɬ<EFBFBD>פʼ<D7A4><CABC><EFBFBD><EFBFBD>γ<EFBFBD>ά<EFBFBD><CEAC><EFBFBD>Ҥ٤<D2A4><D9A4><EFBFBD><EFBFBD>ΤǤ<CEA4><C7A4><EFBFBD>
<20><><EFBFBD><EFBFBD>ʸ<EFBFBD><CAB8><EFBFBD><EFBFBD><EFBFBD><EFBFBD>ǽ<EFBFBD>ʸ¤<CAB8>ͭ<EFBFBD>פ<EFBFBD><D7A4><EFBFBD><EFBFBD>Τʤ<CEA4><CAA4>Τˤ<CEA4><CBA4>뤿<EFBFBD><EBA4BF><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD>Ϥ<EFBFBD><CFA4>Ƥ<EFBFBD><C6A4><EFBFBD><EFBFBD>Τǡ<CEA4>
<20>ɤ<EFBFBD><C9A4><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD>ո<EFBFBD><D5B8><EFBFBD><EFBFBD><EFBFBD><EFBFBD>Ƥ<EFBFBD><C6A4><EFBFBD>
<email>marcs@draenor.org</email>
<20><><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD>Ԥ<EFBFBD><D4A4><EFBFBD><EFBFBD>äƲ<C3A4><C6B2><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD></para>
</sect1>
<sect1 id="kernel">
<title><3E><><EFBFBD><EFBFBD><EFBFBD>ͥ륪<CDA5>ץ<EFBFBD><D7A5><EFBFBD><EFBFBD><EFBFBD></title>
<para>IPFW <20><><EFBFBD>Ȥ<EFBFBD><C8A4><EFBFBD><EFBFBD><EFBFBD><EFBFBD>ˤϡ<CBA4><CFA1><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD>б<EFBFBD><D0B1><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD>˥<EFBFBD><CBA5><EFBFBD><EFBFBD>ͥ<EFBFBD><CDA5><EFBFBD>
<20><><EFBFBD><EFBFBD><EFBFBD>ѥ<EFBFBD><D1A5><EFBFBD>ʤ<EFBFBD><CAA4><EFBFBD><EFBFBD>Фʤ<D0A4><CAA4>ޤ<EFBFBD><DEA4><EFBFBD><EFBFBD><EFBFBD>
<20><><EFBFBD><EFBFBD><EFBFBD>ͥ<EFBFBD><CDA5><EFBFBD><EFBFBD>ƥ<EFBFBD><C6A5><EFBFBD><EFBFBD>ѥ<EFBFBD><D1A5><EFBFBD><EBA4B9><EFBFBD><EFBFBD>ˡ<EFBFBD>ˤĤ<CBA4><C4A4>ƤΤ<C6A4><CEA4><EFBFBD><EFBFBD>ʤ<EFBFBD><CAA4><EFBFBD><EFBFBD><EFBFBD><EFBFBD>ϡ<EFBFBD>
<ulink url="&url.books.handbook;/kernelconfig.html"><3E>ϥ<EFBFBD><CFA5>ɥ֥å<D6A5><C3A5><EFBFBD>
<20><><EFBFBD><EFBFBD><EFBFBD>ͥ<EFBFBD><CDA5>Υ<EFBFBD><CEA5><EFBFBD><EFBFBD>ե<EFBFBD><D5A5><EFBFBD><EFBFBD><EFBFBD><ECA1BC><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD></ulink><3E><><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD>
IPFW <20><><EFBFBD>б<EFBFBD><D0B1><EFBFBD><EFBFBD><EFBFBD><EFBFBD>ˤϡ<CBA4><CFA1><EFBFBD><EFBFBD><EFBFBD><EFBFBD>ͥ<EFBFBD><CDA5><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD>ե<EFBFBD><D5A5><EFBFBD><EFBFBD><EFBFBD><EFBFBD>˰ʲ<CBB0><CAB2>Υ<EFBFBD><CEA5>ץ<EFBFBD><D7A5><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD>
<20>ɲä<C9B2><C3A4>ʤ<EFBFBD><CAA4><EFBFBD><EFBFBD>Фʤ<D0A4><CAA4>ޤ<EFBFBD><DEA4><EFBFBD><EFBFBD><EFBFBD></para>
<variablelist>
<varlistentry>
<term><literal>options IPFIREWALL</literal></term>
<listitem>
<para><3E><><EFBFBD><EFBFBD><EFBFBD>ͥ<EFBFBD><CDA5>Υե<CEA5><D5A5><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD>Υ<EFBFBD><CEA5><EFBFBD><EFBFBD>ɤ<EFBFBD>ͭ<EFBFBD><CDAD><EFBFBD>ˤ<EFBFBD><CBA4>ޤ<EFBFBD><DEA4><EFBFBD></para>
<note><para><3E><><EFBFBD><EFBFBD>ʸ<EFBFBD><CAB8><EFBFBD>Ǥϡ<C7A4>&os; 5.X <20><>ư<EFBFBD><C6B0><EFBFBD><EFBFBD><EFBFBD>Ƥ<EFBFBD><C6A4><EFBFBD><EFBFBD>Ȳ<EFBFBD><C8B2><EFBFBD><EAA4B7>
<20><><EFBFBD>ޤ<EFBFBD><DEA4><EFBFBD>&os; 4.X <20><>ư<EFBFBD><C6B0><EFBFBD><EFBFBD><EFBFBD>Ƥ<EFBFBD><C6A4><EFBFBD><EFBFBD><EFBFBD><E6A1BC><EFBFBD><EFBFBD><EFBFBD>ϡ<EFBFBD><CFA1><EFBFBD><EFBFBD><EFBFBD><EFBFBD>ͥ<EFBFBD><CDA5><EFBFBD>
<emphasis>IPFW2</emphasis> <20><><EFBFBD>б<EFBFBD><D0B1><EFBFBD><EFBFBD><EFBFBD><EFBFBD>
<20>ƥ<EFBFBD><C6A5><EFBFBD><EFBFBD>ѥ<EFBFBD><D1A5><EFBFBD>ʤ<EFBFBD><CAA4><EFBFBD><EFBFBD>Фʤ<D0A4><CAA4>ޤ<EFBFBD><DEA4><EFBFBD><EFBFBD><EFBFBD>&os; 4.X <20>Υ<CEA5><E6A1BC><EFBFBD><EFBFBD><EFBFBD>ϡ<EFBFBD>
<20><><EFBFBD><EFBFBD><EFBFBD>ƥ<EFBFBD><C6A5><EFBFBD> IPFW2 <20><><EFBFBD><EFBFBD><EFBFBD>Ѥ<EFBFBD><D1A4>뤿<EFBFBD><EBA4BF><EFBFBD>ξܺ٤<DCBA>
&man.ipfw.8; <20>Υޥ˥奢<CBA5><E5A5A2><EFBFBD>ڡ<EFBFBD><DAA1><EFBFBD><EFBFBD>򻲹ͤˤ<CDA4><CBA4>Ƥ<EFBFBD><C6A4><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD>äˡ<C3A4>
<emphasis>USING IPFW2 IN FreeBSD-STABLE</emphasis>
<20>Ȥ<EFBFBD><C8A4><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD>տ<EFBFBD><D5BF><EFBFBD><EFBFBD>ɤ<EFBFBD><C9A4>Ǥ<EFBFBD><C7A4><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD></para></note>
</listitem>
</varlistentry>
<varlistentry>
<term><literal>options IPFIREWALL_VERBOSE</literal></term>
<listitem>
<para><3E><><EFBFBD><EFBFBD><EFBFBD>ƥ<EFBFBD><C6A5><EFBFBD> logger <20>ص<EFBFBD>Ͽ<EFBFBD><CFBF><EFBFBD>줿<EFBFBD>ѥ<EFBFBD><D1A5>åȤ<C3A5><C8A4><EFBFBD><EFBFBD><EFBFBD><EFBFBD>ޤ<EFBFBD><DEA4><EFBFBD></para>
</listitem>
</varlistentry>
<varlistentry>
<term><literal>options
IPFIREWALL_VERBOSE_LIMIT=<replaceable>500</replaceable></literal></term>
<listitem>
<para><3E><><EFBFBD>ƤϤޤ륨<DEA4><EBA5A8><EFBFBD>ȥ꤬<C8A5><EAA4AC>Ͽ<EFBFBD><CFBF><EFBFBD><EFBFBD><ECA4A6><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD>¤<EFBFBD><C2A4>ޤ<EFBFBD><DEA4><EFBFBD>
<20><><EFBFBD><EFBFBD><EFBFBD>ϡ<EFBFBD><CFA1><EFBFBD><EFBFBD><EFBFBD><EFBFBD>ӥ<EFBFBD><D3A5><EFBFBD>ǽ (DoS) <20><><EFBFBD><EFBFBD><E2A4AC><EFBFBD><EFBFBD><EFBFBD>Ƥ⡢syslog <20><><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD>
<20><><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD>򤱤ơ<F2A4B1A4><C6A1>ե<EFBFBD><D5A5><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD>γ<EFBFBD>ư<EFBFBD><C6B0><EFBFBD><EFBFBD>Ͽ<EFBFBD>Ǥ<EFBFBD><C7A4><EFBFBD><EFBFBD><EFBFBD>ˤ<EFBFBD><CBA4>ޤ<EFBFBD><DEA4><EFBFBD>
<replaceable>500</replaceable> <20><><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD>ʿ<EFBFBD><CABF>Ǥ<EFBFBD><C7A4><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD>ʤ<EFBFBD><CAA4><EFBFBD>
<20>׷<EFBFBD><D7B7>˴<EFBFBD><CBB4>Ť<EFBFBD><C5A4><EFBFBD>Ĵ<EFBFBD><C4B4><EFBFBD>Ǥ<EFBFBD><C7A4>ޤ<EFBFBD><DEA4><EFBFBD></para>
</listitem>
</varlistentry>
</variablelist>
<warning><para><3E><><EFBFBD><EFBFBD><EFBFBD>ͥ<EFBFBD><CDA5>κƥ<CEBA><C6A5><EFBFBD><EFBFBD>ѥ<EFBFBD><D1A5><EFBFBD><EBA4AC>λ<EFBFBD><CEBB><EFBFBD>Ƥ⡢<C6A4><E2A1A2><EFBFBD><EFBFBD><EFBFBD>ƥ<EFBFBD><C6A5><EFBFBD>
<emphasis><3E>Ƶ<EFBFBD>ư<EFBFBD><C6B0><EFBFBD>ʤ<EFBFBD><CAA4><EFBFBD></emphasis><3E><><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD>
<20><><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD>Ƥ<EFBFBD><C6A4>ޤ<EFBFBD><DEA4>ȡ<EFBFBD><C8A1><EFBFBD><EFBFBD><EFBFBD>Ū<EFBFBD>˥<EFBFBD><CBA5><EFBFBD><EFBFBD>ƥफ<C6A5><E0A4AB><EFBFBD>Ĥ<EFBFBD><C4A4>Ф<EFBFBD><D0A4><EFBFBD><EFBFBD>Ƥ<EFBFBD><C6A4>ޤ<EFBFBD>
<20><>ǽ<EFBFBD><C7BD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD>ޤ<EFBFBD><DEA4><EFBFBD><EFBFBD><EFBFBD><EFBFBD>åȤ<C3A5>Ŭ<EFBFBD>ڤ<EFBFBD><DAA4><EFBFBD><EFBFBD>֤<EFBFBD><D6A4><EFBFBD><EFBFBD><EFBFBD>Ϣ<EFBFBD><CFA2><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD>ե<EFBFBD><D5A5><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD>
<20><><EFBFBD>٤ƹ<D9A4><C6B9><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD>ޤǤϺƵ<CFBA>ư<EFBFBD><C6B0><EFBFBD>ƤϤ<C6A4><CFA4><EFBFBD><EFBFBD>ޤ<EFBFBD><DEA4><EFBFBD><EFBFBD><EFBFBD></para></warning>
</sect1>
<sect1 id="rcconf">
<title><3E>ե<EFBFBD><D5A5><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD>ܤ<EFBFBD><DCA4><EFBFBD><EFBFBD><EFBFBD><E8A4A6>
<filename>/etc/rc.conf</filename> <20><><EFBFBD>ѹ<EFBFBD><D1B9><EFBFBD><EFBFBD><EFBFBD></title>
<para><3E><><EFBFBD><EFBFBD><EFBFBD>ƥ<EFBFBD><C6A5>ǥե<C7A5><D5A5><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD>ͭ<EFBFBD><CDAD><EFBFBD>ˤ<EFBFBD><CBA4><EFBFBD><EFBFBD><EFBFBD><EBA1BC><EFBFBD>ե<EFBFBD><D5A5><EFBFBD><EFBFBD><EFBFBD><EFBFBD>Τ<EFBFBD><CEA4><EFBFBD><EAA4AB>
<20><><EFBFBD><EFBFBD>뤿<EFBFBD><EBA4BF><EFBFBD><EFBFBD> <filename>/etc/rc.conf</filename>
<20><><EFBFBD><EFBFBD>ѹ<EFBFBD><D1B9><EFBFBD><EFBFBD><EFBFBD>ɬ<EFBFBD>פ<EFBFBD><D7A4><EFBFBD><EFBFBD><EFBFBD><EFBFBD>ޤ<EFBFBD><DEA4><EFBFBD>
<filename>/etc/rc.conf</filename> <20>˰ʲ<CBB0><CAB2>ιԤ<CEB9><D4A4>ä<EFBFBD><C3A4>Ƥ<EFBFBD><C6A4><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD></para>
<programlisting>firewall_enable="YES"
firewall_script="/etc/firewall/fwrules"</programlisting>
<para>
<20><EFBFBD><E5B5AD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD>˴ؤ<CBB4><D8A4><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD>ܤ<EFBFBD><DCA4><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD>
<filename>/etc/defaults/rc.conf</filename> <20>򻲾Ȥ<F2BBB2BE><C8A4><EFBFBD><EFBFBD><EFBFBD><EFBFBD>ǡ<EFBFBD>
&man.rc.conf.5; <20><><EFBFBD>ɤ<EFBFBD><C9A4>Dz<EFBFBD><C7B2><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD></para>
</sect1>
<sect1>
<title>PPP <20>Υͥåȥ<C8A5><EFA1BC><EFBFBD><EFBFBD><EFBFBD>ɥ쥹<C9A5>Ѵ<EFBFBD><D1B4><EFBFBD>ͭ<EFBFBD><CDAD><EFBFBD>ˤ<EFBFBD><CBA4><EFBFBD></title>
<para><3E>ͥåȥ<C8A5><EFA1BC><EFBFBD><EFBFBD><EFBFBD>Υ<EFBFBD><CEA5><EFBFBD><E9A5A4><EFBFBD><EFBFBD><EFBFBD>Ȥ<EFBFBD><C8A4><EFBFBD><EFBFBD><EFBFBD><EFBFBD>ȥ<EFBFBD><C8A5><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD>ͳ<EFBFBD><CDB3><EFBFBD><EFBFBD>³<EFBFBD>Ǥ<EFBFBD><C7A4><EFBFBD>
<20><EFBFBD>ˤ<EFBFBD><CBA4><EFBFBD><EFBFBD>ˤϡ<CBA4>PPP <20>Υͥåȥ<C8A5><EFA1BC><EFBFBD><EFBFBD><EFBFBD>ɥ쥹<C9A5>Ѵ<EFBFBD> (NAT) <20><>ͭ<EFBFBD><CDAD><EFBFBD><EFBFBD>
<20><><EFBFBD>ʤ<EFBFBD><CAA4><EFBFBD><EFBFBD>Фʤ<D0A4><CAA4>ޤ<EFBFBD><DEA4><EFBFBD><EFBFBD><EFBFBD>PPP <20><> NAT <20><>ǽ<EFBFBD><C7BD><EFBFBD><EFBFBD><EFBFBD>Ѥ<EFBFBD><D1A4><EFBFBD><EFBFBD>ˤϡ<CBA4><CFA1><EFBFBD><EFBFBD>ιԤ<CEB9>
<filename>/etc/rc.conf</filename> <20><><EFBFBD>ɲä<C9B2><C3A4>Ƥ<EFBFBD><C6A4><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD></para>
<programlisting>ppp_enable="YES"
ppp_mode="auto"
ppp_nat="YES"
ppp_profile="<replaceable>your_profile</replaceable>"</programlisting>
<note><para><literal>your_profile</literal> <20>򤢤ʤ<F2A4A2A4><CAA4><EFBFBD><EFBFBD>ȤΥ<C8A4><CEA5><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD>
<20><><EFBFBD>åץץ<D7A5><D7A5>ե<EFBFBD><D5A5><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD>ѹ<EFBFBD><D1B9><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD>ˤ<EFBFBD><CBA4>Ƥ<EFBFBD><C6A4><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD></para></note>
</sect1>
<sect1 id="rules">
<title><3E>ե<EFBFBD><D5A5><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD>ؤΥ<CEA5><EFBFBD>å<EFBFBD></title>
<para><3E><><EFBFBD><EFBFBD><EFBFBD>Ǥ<EFBFBD><C7A4>ʤ<EFBFBD><CAA4>Υ<EFBFBD><CEA5><EFBFBD><EFBFBD>ƥ<EFBFBD><C6A5>ѤΥե<CEA5><D5A5><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EBA1BC><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD>ޤ<EFBFBD><DEA4><EFBFBD>
<20>䤿<EFBFBD><E4A4BF><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD>Ҥ<EFBFBD><D2A4><EFBFBD><EFBFBD><EFBFBD><EFBFBD>åȤϡ<C8A4><CFA1><EFBFBD><EFBFBD><EFBFBD>ʬ<EFBFBD>Υ<EFBFBD><CEA5><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD>åץ桼<D7A5><E6A1BC><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD>
<20><><EFBFBD><EFBFBD>Ū<EFBFBD>ʿ<EFBFBD><CABF><EFBFBD><EFBFBD>Ǥ<EFBFBD><C7A4><EFBFBD><EFBFBD><EFBFBD><E6A1BC><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD>׵<EFBFBD><D7B5>ˤԤä<D4A4><C3A4><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD>ʤ<EFBFBD><CAA4>Ǥ<EFBFBD><C7A4><EFBFBD><E7A4A6><EFBFBD><EFBFBD>IPFW
<20><>ư<EFBFBD><C6B0><EFBFBD>ˤĤ<CBA4><C4A4>ƴ<EFBFBD><C6B4><EFBFBD>Ū<EFBFBD><C5AA><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD>׵<EFBFBD><D7B5>˹<EFBFBD><CBB9><EFBFBD><EFA4BB><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD>ѹ<EFBFBD><D1B9><EFBFBD><EFBFBD><EFBFBD>
<20>ΤϷ빽<CFB7><EBB9BD>ñ<EFBFBD>ʤϤ<CAA4><CFA4>Ǥ<EFBFBD><C7A4><EFBFBD></para>
<para><3E>ޤ<EFBFBD><DEA4>ϡ<EFBFBD><CFA1>ĺ<EFBFBD>Ū<EFBFBD>ʥե<CAA5><D5A5><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD>δ<EFBFBD><CEB4>ä<EFBFBD><C3A4><EFBFBD><EFBFBD>Ϥ<EFBFBD><CFA4>ޤ<EFBFBD><DEA4><EFBFBD><E7A4A6><EFBFBD>ĺ<EFBFBD>Ū<EFBFBD><C5AA>
<20>ե<EFBFBD><D5A5><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD>ϡ<EFBFBD><CFA1><EFBFBD><EFBFBD><EFBFBD>ʤ<EFBFBD><CAA4><EFBFBD><EFBFBD><EFBFBD><EFBFBD>Ϥ<EFBFBD><CFA4>٤Ƶ<D9A4><C6B5>ݤ<EFBFBD><DDA4><EFBFBD><EFBFBD>Ȥ<EFBFBD><C8A4><EFBFBD><EFBFBD>ͤ<EFBFBD><CDA4><EFBFBD>
<20><><EFBFBD>Ť<EFBFBD><C5A4>Ƥ<EFBFBD><C6A4>ޤ<EFBFBD><DEA4><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><E9A1A2><EFBFBD><EFBFBD><EFBFBD>Ԥϵ<D4A4><CFB5>Ĥ<EFBFBD><C4A4><EFBFBD><EFBFBD><EFBFBD><EFBFBD>̿<EFBFBD><CCBF>ѤΥ<CEA5><EBA1BC><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD>Ū<EFBFBD><C5AA>
<20>ɲäǤ<C3A4><C7A4>ޤ<EFBFBD><DEA4><EFBFBD><EFBFBD>̿<EFBFBD><CCBF>ѤΥ<CEA5><EBA1BC><EFBFBD>ϡ<EFBFBD><CFA1><EFBFBD><EFBFBD>Ĥ<EFBFBD><C4A4><EFBFBD><EFBFBD>Ǥ<EFBFBD><C7A4><EFBFBD><ECA4AB><EFBFBD><EFBFBD><EFBFBD>ݤȤ<DDA4><C8A4><EFBFBD>
<20><><EFBFBD>֤Ǥ<D6A4><C7A4><EFBFBD><EFBFBD>٤<EFBFBD><D9A4>Ǥ<EFBFBD><C7A4><EFBFBD><EFBFBD><EFBFBD><EFBFBD>Ĥ<EFBFBD><C4A4><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD>Τ<EFBFBD><CEA4>٤ƤˤĤ<CBA4><C4A4>ƥ롼<C6A5><EBA1BC><EFBFBD><EFBFBD><EFBFBD>ɲä<C9B2><C3A4>ơ<EFBFBD>
<20><><EFBFBD><EFBFBD><EFBFBD>ʳ<EFBFBD><CAB3>Ϥ<EFBFBD><CFA4>٤Ƽ<D9A4>ưŪ<C6B0>˵<EFBFBD><CBB5>ݤ<EFBFBD><DDA4><EFBFBD><EFBFBD><EFBFBD>Ȥ<EFBFBD><C8A4><EFBFBD><EFBFBD><EFBFBD><EFBFBD>Ȥ<EFBFBD><C8A4>ޤ<EFBFBD><DEA4><EFBFBD></para>
<para><3E><><EFBFBD><EFBFBD><EFBFBD>Ǥϡ<C7A4><CFA1>ե<EFBFBD><D5A5><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD>Υ<CEA5><EBA1BC><EFBFBD><EFBFBD><EFBFBD><EFBFBD>¸<EFBFBD><C2B8><EFBFBD><EFBFBD><EFBFBD>ǥ<EFBFBD><C7A5><EFBFBD>ȥ<EFBFBD><C8A5><EFBFBD>
<20><><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD>ޤ<EFBFBD><DEA4><EFBFBD><E7A4A6><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD>Ǥϡ<C7A4>
<filename class="directory">/etc/firewall</filename> <20><><EFBFBD>Ѥ<EFBFBD><D1A4>ޤ<EFBFBD><DEA4><EFBFBD>
<20>ǥ<EFBFBD><C7A5><EFBFBD>ȥ<EFBFBD><C8A5>򤽤<EFBFBD><F2A4BDA4><EFBFBD><EFBFBD>ѹ<EFBFBD><D1B9><EFBFBD><EFBFBD><EFBFBD>
<filename>rc.conf</filename> <20>ǵ<EFBFBD><C7B5><EFBFBD><EAA4B7>
<filename>fwrules</filename> <20>ե<EFBFBD><D5A5><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD>Խ<EFBFBD><D4BD><EFBFBD><EFBFBD>ޤ<EFBFBD><DEA4><EFBFBD>
<20><><EFBFBD>Υե<CEA5><D5A5><EFBFBD><EFBFBD><EFBFBD>̾<EFBFBD><CCBE><EFBFBD><EFBFBD>ʬ<EFBFBD><CAAC>˾<EFBFBD><CBBE>Ǥ<EFBFBD>դΤ<D5A4><CEA4>Τ<EFBFBD><CEA4>ѹ<EFBFBD><D1B9>Ǥ<EFBFBD><C7A4><EFBFBD><EFBFBD>Ȥ<EFBFBD><C8A4><EFBFBD><EFBFBD><EFBFBD><EFBFBD>Ȥ˵<C8A4><CBB5><EFBFBD><EFBFBD>Ĥ<EFBFBD><C4A4>Ƥ<EFBFBD><C6A4><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD>
<20><><EFBFBD>μ<EFBFBD><CEBC><EFBFBD><EFBFBD><EFBFBD><EFBFBD>Ϥ<EFBFBD><CFA4>ʤ<EFBFBD><CAA4><EFBFBD><EFBFBD>Ȥ<EFBFBD><C8A4><EFBFBD><EFBFBD>Ȥ<EFBFBD><C8A4><EFBFBD><EFBFBD><E2A4B7><EFBFBD>ʤ<EFBFBD><CAA4>ե<EFBFBD><D5A5><EFBFBD><EFBFBD><EFBFBD>̾<EFBFBD>ΰ<EFBFBD><CEB0><EFBFBD><EFBFBD><EFBFBD>
Ϳ<><CDBF><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD>Ǥ<EFBFBD><C7A4><EFBFBD></para>
<para><3E><><EFBFBD><EFBFBD><EFBFBD>Ǥϡ<C7A4><CFA1><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD>ܤ<EFBFBD><DCA4>줿<EFBFBD>ե<EFBFBD><D5A5><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD>ե<EFBFBD><D5A5><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD>
<20><><EFBFBD>򸫤Ƥߤޤ<DFA4><DEA4><EFBFBD><E7A4A6></para>
<programlisting># (/etc/rc.firewall <20>ˤ<EFBFBD><CBA4><EFBFBD><EFBFBD><EFBFBD><E8A4A6>) <20><><EFBFBD>Ȥ<EFBFBD><C8A4><EFBFBD>ñ<EFBFBD>ˤ<EFBFBD><CBA4>뤿<EFBFBD><EBA4BF><EFBFBD>˥ե<CBA5><D5A5><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD>
# <20><><EFBFBD>ޥ<EFBFBD><DEA5>ɤ<EFBFBD><C9A4><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD>ޤ<EFBFBD><DEA4><EFBFBD><EFBFBD>ɤߤ䤹<DFA4><E4A4B9><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD>Τ<EFBFBD><CEA4><EFBFBD>Ω<EFBFBD><CEA9><EFBFBD>ޤ<EFBFBD><DEA4><EFBFBD>
fwcmd="/sbin/ipfw"
# <20><><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD>󥿥ե<F3A5BFA5><D5A5><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD>ޤ<EFBFBD><DEA4><EFBFBD><EFBFBD><EFBFBD><E6A1BC><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD> ppp <20>Ǥϡ<C7A4>
# <20><><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD>ʤ<EFBFBD><CAA4><EFBFBD> tun0 <20>ˤʤ<CBA4><CAA4>ޤ<EFBFBD><DEA4><EFBFBD>
oif="tun0"
# <20><><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD>󥿥ե<F3A5BFA5><D5A5><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD>ޤ<EFBFBD><DEA4><EFBFBD><EFBFBD>̾<EFBFBD><CCBE>ϥͥåȥ<C8A5><EFA1BC><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD>ɤ<EFBFBD>
# <20>ʤ<EFBFBD><CAA4>ޤ<EFBFBD><DEA4><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD>ɬ<EFBFBD><C9AC><EFBFBD><EFBFBD><EFBFBD>ʤ<EFBFBD><CAA4>Υͥåȥ<C8A5><EFA1BC><EFBFBD><EFBFBD><EFBFBD>󥿥ե<F3A5BFA5><D5A5><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD>
# <20><><EFBFBD><EFBFBD><EFA4BB><EFBFBD>ѹ<EFBFBD><D1B9><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD>ˤ<EFBFBD><CBA4>Ƥ<EFBFBD><C6A4><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD>
iif="fxp0"
# <20><EFBFBD><EBA1BC><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD>ɹ<EFBFBD><C9B9>ߤ<EFBFBD><DFA4><EFBFBD><EFBFBD><EFBFBD><EFBFBD>ˡ<EFBFBD><CBA1><EFBFBD><EFBFBD>ߤΥ<CEA5><EBA1BC><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD>Ū<EFBFBD>˾õ<C3B5>ޤ<EFBFBD><DEA4><EFBFBD>
$fwcmd -f flush
# <20><><EFBFBD>٤ƤΥѥ<CEA5><D1A5>åȤξ<C8A4><CEBE>֤<EFBFBD><D6A4><EFBFBD>ǧ<EFBFBD><C7A7><EFBFBD>ޤ<EFBFBD><DEA4><EFBFBD>
$fwcmd add check-state
# <20><><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD>󥿥ե<F3A5BFA5><D5A5><EFBFBD><EFBFBD><EFBFBD>¦<EFBFBD>Ǥʤꤹ<CAA4>ޤ<EFBFBD><DEA4><EFBFBD><EFBFBD>ɤ<EFBFBD><C9A4>ޤ<EFBFBD><DEA4><EFBFBD>
$fwcmd add deny ip from any to any in via $oif not verrevpath
# <20>䤿<EFBFBD><E4A4BF><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD>Ϥ<EFBFBD><CFA4><EFBFBD><EFBFBD><EFBFBD>³<EFBFBD>Ϥ<EFBFBD><CFA4>٤Ƶ<D9A4><C6B5>Ĥ<EFBFBD><C4A4><EFBFBD><EFBFBD><EFBFBD><EFBFBD>֤<EFBFBD><D6A4><EFBFBD>¸<EFBFBD><C2B8><EFBFBD>ޤ<EFBFBD><DEA4><EFBFBD>
# <20><><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD>ưŪ<C6B0>ʥ롼<CAA5><EBA1BC><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD>ʤ<EFBFBD><CAA4><EFBFBD>Ω<EFBFBD><CEA9><EFBFBD><EFBFBD><EFBFBD><EFBFBD>³<EFBFBD>ϵ<EFBFBD><CFB5>ݤ<EFBFBD><DDA4>ޤ<EFBFBD><DEA4><EFBFBD>
$fwcmd add allow ip from me to any out via $oif keep-state
$fwcmd add deny tcp from any to any established in via $oif
# <20>ͥåȥ<C8A5><EFA1BC><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD>³<EFBFBD>Ϥ<EFBFBD><CFA4>٤Ƶ<D9A4><C6B5>Ĥ<EFBFBD><C4A4>ޤ<EFBFBD><DEA4><EFBFBD>
$fwcmd add allow ip from any to any via $iif
# <20><><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD>̿<EFBFBD><CCBF>򤹤٤Ƶ<D9A4><C6B5>Ĥ<EFBFBD><C4A4>ޤ<EFBFBD><DEA4><EFBFBD>
$fwcmd add allow all from any to any via lo0
$fwcmd add deny all from any to 127.0.0.0/8
$fwcmd add deny ip from 127.0.0.0/8 to any
# <20><><EFBFBD>󥿡<EFBFBD><F3A5BFA1>ͥå<CDA5>¦<EFBFBD>Υ<CEA5><E6A1BC><EFBFBD><EFBFBD> 22 <20>֤<EFBFBD> 80 <20>֥ݡ<D6A5><DDA1>Ȥ<EFBFBD><C8A4><EFBFBD>³<EFBFBD><C2B3><EFBFBD><EFBFBD>Ȥ<EFBFBD>
# <20><><EFBFBD>Ĥ<EFBFBD><C4A4>ޤ<EFBFBD><DEA4><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD>Ǥϡ<C7A4>sshd <20>ȥ<EFBFBD><C8A5><EFBFBD><EFBFBD>֥<EFBFBD><D6A5><EFBFBD><EFBFBD>Фؤ<D0A4><D8A4><EFBFBD>³<EFBFBD><C2B3><EFBFBD>ä˵<C3A4><CBB5>Ĥ<EFBFBD><C4A4>Ƥ<EFBFBD><C6A4>ޤ<EFBFBD><DEA4><EFBFBD>
$fwcmd add allow tcp from any to me dst-port 22,80 in via $oif setup keep-state
# ICMP <20>ѥ<EFBFBD><D1A5>åȤ<C3A5><C8A4><EFBFBD><EFBFBD>Ĥ<EFBFBD><C4A4>ޤ<EFBFBD><DEA4><EFBFBD><EFBFBD>ۥ<EFBFBD><DBA5>Ȥ<EFBFBD> ping(8) <20>˱<EFBFBD><CBB1><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD>ʤ<EFBFBD><CAA4><EFBFBD><EFBFBD>С<EFBFBD>
# icmptypes <20><><EFBFBD><EFBFBD> 8 <20><><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD>Ƥ<EFBFBD><C6A4><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD>
$fwcmd add allow icmp from any to any via $oif icmptypes 0,3,8,11,12
# <20>Ĥ<EFBFBD><C4A4>Τ<EFBFBD><CEA4>٤Ƥ<D9A4><C6A4><EFBFBD><EFBFBD>ݤ<EFBFBD><DDA4>Ƶ<EFBFBD>Ͽ<EFBFBD><CFBF><EFBFBD>ޤ<EFBFBD><DEA4><EFBFBD>
$fwcmd add deny log ip from any to any</programlisting>
<para>22 <20>֤<EFBFBD> 80 <20>֥ݡ<D6A5><DDA1>Ȥؤ<C8A4><D8A4><EFBFBD>³<EFBFBD>Τߤ<CEA4><DFA4><EFBFBD><EFBFBD>Ĥ<EFBFBD><C4A4><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD>ʳ<EFBFBD><CAB3>˻<EFBFBD><CBBB>ߤ<EFBFBD><DFA4>줿
<20><>³<EFBFBD>Ϥ<EFBFBD><CFA4>٤Ƶ<D9A4>Ͽ<EFBFBD><CFBF><EFBFBD><EFBFBD><EBA1A2><EFBFBD><EFBFBD><EFBFBD>˵<EFBFBD>ǽ<EFBFBD><C7BD><EFBFBD><EFBFBD><EFBFBD>ե<EFBFBD><D5A5><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD>Ǥ<EFBFBD><C7A4>ޤ<EFBFBD><DEA4><EFBFBD><EFBFBD><EFBFBD>
<20><><EFBFBD><EFBFBD><EFBFBD>ǰ<EFBFBD><C7B0><EFBFBD><EFBFBD>˺Ƶ<CBBA>ư<EFBFBD><C6B0><EFBFBD><EFBFBD>Ȥ<EFBFBD><C8A4>Ǥ<EFBFBD><C7A4><EFBFBD><EFBFBD>ե<EFBFBD><D5A5><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EBA4AC>ưŪ<C6B0><C5AA>
<20><>ư<EFBFBD><C6B0><EFBFBD>ƥ롼<C6A5><EFBFBD>åȤ<C3A5><C8A4>ɤ߹<C9A4><DFB9>ޤ<EFBFBD><DEA4><EFBFBD><EFBFBD>Ϥ<EFBFBD><CFA4>Ǥ<EFBFBD><C7A4><EFBFBD>
<20><EFBFBD><E2A4B7><EFBFBD><EFBFBD><EFBFBD>˲<EFBFBD><CBB2><EFBFBD><EFBFBD>ְ㤤<D6B0>򸫤Ĥ<F2B8ABA4><C4A4><EFBFBD><EFBFBD><EFBFBD><EAA1A2><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD>ä<EFBFBD><C3A4>
<20><><EFBFBD>Υڡ<CEA5><DAA1><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD>Ƥ<EFBFBD><C6A4><EFBFBD><EFBFBD><EFBFBD><EFBFBD>ʤ顢
<20>ɤ<EFBFBD><C9A4><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD>Żҥ᡼<D2A5><E1A1BC><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD>äƲ<C3A4><C6B2><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD></para>
</sect1>
<sect1>
<title><3E><><EFBFBD><EFBFBD></title>
<qandaset>
<qandaentry>
<question>
<para>
<errorname>limit 500 reached on entry 2800</errorname>
<20>Τ<CEA4>ʥ<EFBFBD><CAA5>å<EFBFBD><C3A5><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD>Ф<EFBFBD><D0A4><EFBFBD><E5A1A2><EFBFBD>Υޥ<CEA5><DEA5><EFBFBD><EFBFBD>Ϥ<EFBFBD><CFA4>Υ<CEA5><EBA1BC><EFBFBD>ֹ<EFBFBD><D6B9><EFBFBD><EFBFBD><EFBFBD>
<20><><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD>ݤ<EFBFBD><DDA4>줿<EFBFBD>ѥ<EFBFBD><D1A5>åȤ<C3A5><C8A4><EFBFBD>Ͽ<EFBFBD><CFBF><EFBFBD>ʤ<EFBFBD><CAA4>ʤ<EFBFBD><CAA4>ޤ<EFBFBD><DEA4><EFBFBD><EFBFBD><EFBFBD>
<20>ե<EFBFBD><D5A5><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD>Ϥޤ<CFA4>ư<EFBFBD><EFBFBD>Ƥ<EFBFBD><C6A4><EFBFBD><EFBFBD>ΤǤ<CEA4><C7A4><EFBFBD><E7A4A6>?</para>
</question>
<answer>
<para>ñ<>ˤ<EFBFBD><CBA4>Υ<CEA5><EBA1BC><EFBFBD>Υ<EFBFBD><CEA5><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD>Ȥ<EFBFBD><C8A4><EFBFBD><EFBFBD><EFBFBD><EFBFBD>ͤ<EFBFBD>ã<EFBFBD><C3A3><EFBFBD><EFBFBD>
<20>Ȥ<EFBFBD><C8A4><EFBFBD><EFBFBD><EFBFBD><EFBFBD>Ȥ<EFBFBD><C8A4><EFBFBD>̣<EFBFBD><CCA3><EFBFBD>Ƥ<EFBFBD><C6A4>ޤ<EFBFBD><DEA4><EFBFBD><EFBFBD><EFBFBD><EFBFBD>ΤϤޤ<CFA4><DEA4><EFBFBD>ǽ<EFBFBD><C7BD><EFBFBD>Ƥ<EFBFBD><C6A4>ޤ<EFBFBD><DEA4><EFBFBD><EFBFBD><EFBFBD>
<20><><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD>󥿤<EFBFBD><F3A5BFA4><EFBFBD>åȤ<C3A5><C8A4><EFBFBD><EFBFBD>ޤǤ<DEA4><C7A4><EFBFBD><EFBFBD>ʾ<EFBFBD><CABE><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD>Ͽ<EFBFBD><CFBF><EFBFBD>ޤ<EFBFBD><DEA4><EFBFBD><EFBFBD><EFBFBD>
<20><><EFBFBD><EFBFBD><EFBFBD>󥿤Υ<CEA5>å<EFBFBD><C3A5><EFBFBD>ˡ<EFBFBD><CBA1><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD>ʲ<EFBFBD><CAB2>˼<EFBFBD><CBBC><EFBFBD><EFBFBD>ޤ<EFBFBD><DEA4><EFBFBD></para>
<screen>&prompt.root; <userinput>ipfw resetlog</userinput></screen>
<para><3E>ޤ<EFBFBD><DEA4><EFBFBD><EFBFBD><EFBFBD><EFBFBD>θ³<CEB8><C2B3>ͤ<EFBFBD><CDA4><EFBFBD><EFBFBD>Ҥ<EFBFBD>
<option>IPFIREWALL_VERBOSE_LIMIT</option> <20><><EFBFBD>ץ<EFBFBD><D7A5><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD>
<20>ѹ<EFBFBD><D1B9><EFBFBD><EFBFBD><EFBFBD>Ȥ<EFBFBD><C8A4>Ǥ<EFBFBD><C7A4>ޤ<EFBFBD><DEA4><EFBFBD>
<20><><EFBFBD><EFBFBD><EFBFBD>ˡ<EFBFBD><CBA1><EFBFBD><EFBFBD>θ³<CEB8><C2B3>ͤ<EFBFBD> (<28><><EFBFBD><EFBFBD><EFBFBD>ͥ<EFBFBD><CDA5><EFBFBD><EFBFBD>ƹ<EFBFBD><C6B9>ۤ<EFBFBD><DBA4>ƺƵ<C6BA>ư<EFBFBD><C6B0><EFBFBD><EFBFBD><EFBFBD><EFBFBD>)
&man.sysctl.8; <20><> net.inet.ip.fw.verbose_limit <20>ѿ<EFBFBD><D1BF>ˤ<EFBFBD><CBA4><EFBFBD>
<20>ѹ<EFBFBD><D1B9><EFBFBD><EFBFBD><EFBFBD>Ȥ<EFBFBD><C8A4>Ǥ<EFBFBD><C7A4>ޤ<EFBFBD><DEA4><EFBFBD></para>
</answer>
</qandaentry>
<qandaentry>
<question>
<para>
<20><><EFBFBD><EFBFBD><EFBFBD>ְ<EFBFBD><D6B0>äƤ<C3A4><C6A4><EFBFBD><EFBFBD>˰㤤<CBB0><E3A4A4><EFBFBD><EFBFBD><EFBFBD>ޤ<EFBFBD><DEA4><EFBFBD><EFBFBD><EFBFBD>
<20><><EFBFBD>Ϥ<EFBFBD><CFA4>ʤ<EFBFBD><CAA4><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD>ʸ<EFBFBD><CAB8><EFBFBD>̤꽾<CCA4><EABDBE><EFBFBD>ޤ<EFBFBD><DEA4><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD>
<20><><EFBFBD><EFBFBD><EFBFBD>Ф<EFBFBD><D0A4><EFBFBD><EFBFBD>Ƥ<EFBFBD><C6A4>ޤ<EFBFBD><DEA4>ޤ<EFBFBD><DEA4><EFBFBD><EFBFBD><EFBFBD></para>
</question>
<answer>
<para>
<20><><EFBFBD>Υ<EFBFBD><CEA5><EFBFBD>ȥꥢ<C8A5><EAA5A2><EFBFBD>Ϥ<EFBFBD><CFA4>ʤ<EFBFBD><CAA4><EFBFBD>
<emphasis>userland-ppp</emphasis>
<20><><EFBFBD><EFBFBD>Ư<EFBFBD><C6AF><EFBFBD>Ƥ<EFBFBD><C6A4>ơ<EFBFBD><C6A1><EFBFBD><EFBFBD>η<EFBFBD><CEB7><EFBFBD>
<devicename>tun0</devicename>
[&man.ppp.8; (<28>ޤ<EFBFBD><DEA4><EFBFBD>̾<EFBFBD><CCBE> <emphasis>user-ppp</emphasis>)
<20>Ǻ<EFBFBD><C7BA><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD>ǽ<EFBFBD><C7BD><EFBFBD><EFBFBD><EFBFBD>³<EFBFBD><C2B3><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD>ޤ<EFBFBD>]
<20><><EFBFBD>󥿥ե<F3A5BFA5><D5A5><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD>Ƕ<EFBFBD><C7B6><EFBFBD>줿<EFBFBD><EFBFBD><EFBFBD>åȤ<C3A5>ư<EFBFBD><EFBFBD>Ƥ<EFBFBD><C6A4><EFBFBD>Ȥ<EFBFBD><C8A4><EFBFBD><EFBFBD><EFBFBD>Ƥ<EFBFBD><C6A4>ޤ<EFBFBD><DEA4><EFBFBD>
<20><><EFBFBD><EFBFBD><EFBFBD>ʤ<EFBFBD><CAA4><EFBFBD>³<EFBFBD><C2B3>
<devicename>tun1</devicename><3E><><devicename>tun2</devicename>
<20>ʤɤ<CAA4><C9A4>Ѥ<EFBFBD><D1A4>ޤ<EFBFBD><DEA4><EFBFBD></para>
<para>
&man.pppd.8; <20><>
<devicename>ppp0</devicename>
<20><><EFBFBD>󥿥ե<F3A5BFA5><D5A5><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD>Ѥ<EFBFBD><D1A4><EFBFBD><EFBFBD>Ȥ<EFBFBD><C8A4><EFBFBD><EFBFBD><EFBFBD><EFBFBD>Ȥˤ<C8A4><CBA4><EFBFBD><EFBFBD>դ<EFBFBD><D5A4><EFBFBD>٤<EFBFBD><D9A4>Ǥ<EFBFBD><C7A4><EFBFBD>
<20><><EFBFBD>ä<EFBFBD> &man.pppd.8; <20>ˤ<EFBFBD><CBA4><EFBFBD><EFBFBD><EFBFBD>³<EFBFBD><C2B3><EFBFBD>Ϥ<EFBFBD><CFA4><EFBFBD><EFBFBD>ʤ<EFBFBD>
<devicename>ppp0</devicename> <20><><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD>
<devicename>tun0</devicename> <20><><EFBFBD>Ѥ<EFBFBD><D1A4>Ʋ<EFBFBD><C6B2><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD>
<20><><EFBFBD><EFBFBD><EFBFBD>ѹ<EFBFBD><D1B9><EFBFBD>ȿ<EFBFBD>Ǥ<EFBFBD><C7A4><EFBFBD><EFBFBD>ե<EFBFBD><D5A5><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD>Υ<CEA5><EBA1BC><EFBFBD><EFBFBD>
<20>Խ<EFBFBD><D4BD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD>ƻ<EFBFBD>ϰʲ<CFB0><CAB2>˼<EFBFBD><CBBC><EFBFBD><EFBFBD><EFBFBD><EFBFBD>Ƥ<EFBFBD><C6A4>ޤ<EFBFBD><DEA4><EFBFBD>
<20><><EFBFBD>Υ<CEA5><EFBFBD>åȤ<C3A5> <filename>fwrules_tun0</filename>
<20>Ȥ<EFBFBD><C8A4>ƥХå<D0A5><C3A5><EFBFBD><EFBFBD>åפ<C3A5><D7A4><EFBFBD><EFBFBD>Ƥ<EFBFBD><C6A4>ޤ<EFBFBD><DEA4><EFBFBD></para>
<screen> &prompt.user; <userinput>cd /etc/firewall</userinput>
/etc/firewall&prompt.user; <userinput>su</userinput>
<prompt>Password:</prompt>
/etc/firewall&prompt.root; <userinput>mv fwrules fwrules_tun0</userinput>
/etc/firewall&prompt.root; <userinput>cat fwrules_tun0 | sed s/tun0/ppp0/g > fwrules</userinput>
</screen>
<para>
<20><><EFBFBD>ä<EFBFBD><C3A4><EFBFBD><EFBFBD><EFBFBD>³<EFBFBD><C2B3><EFBFBD><EFBFBD>Ω<EFBFBD><CEA9><EFBFBD><EFBFBD><EFBFBD>
<20><><EFBFBD><EFBFBD> &man.ppp.8; <20><> &man.pppd.8; <20>Τɤ<CEA4><C9A4><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD>Ѥ<EFBFBD><D1A4>Ƥ<EFBFBD><C6A4><EFBFBD><EBA4AB><EFBFBD>Τ뤿<CEA4><EBA4BF><EFBFBD><EFBFBD>
&man.ifconfig.8; <20>ν<EFBFBD><CEBD>ϤǸ<CFA4><C7B8><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD>Ȥ<EFBFBD><C8A4>Ǥ<EFBFBD><C7A4>ޤ<EFBFBD><DEA4><EFBFBD>
<20><><EFBFBD>Ȥ<EFBFBD><C8A4>ơ<EFBFBD>&man.pppd.8; <20>Ǻ<EFBFBD><C7BA><EFBFBD><EFBFBD><EFBFBD><EFBFBD>줿<EFBFBD><ECA4BF>³<EFBFBD>Ǥϡ<C7A4>
<20><><EFBFBD>Τ<CEA4>ʤ<EFBFBD><CAA4>Τ<EFBFBD><CEA4>ܤˤ<DCA4><CBA4><EFBFBD><EFBFBD>Ǥ<EFBFBD><C7A4>
(<28>ط<EFBFBD><D8B7>Τ<EFBFBD><CEA4><EFBFBD><EFBFBD><EFBFBD><EFBFBD>Τ<EFBFBD><CEA4><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD>Ƥ<EFBFBD><C6A4>ޤ<EFBFBD>)<29><></para>
<screen> &prompt.user; <userinput>ifconfig</userinput>
<emphasis>(skipped...)</emphasis>
ppp0: flags=<replaceable>8051&lt;UP,POINTOPOINT,RUNNING,MULTICAST&gt; mtu 1524</replaceable>
inet <replaceable>xxx.xxx.xxx.xxx</replaceable> --&gt; <replaceable>xxx.xxx.xxx.xxx</replaceable> netmask <replaceable>0xff000000</replaceable>
<emphasis>(skipped...)</emphasis>
</screen>
<para>
¾<><C2BE><EFBFBD>ǡ<EFBFBD>&man.ppp.8; (<emphasis>user-ppp</emphasis>)
<20>Ǻ<EFBFBD><C7BA><EFBFBD><EFBFBD><EFBFBD><EFBFBD>줿<EFBFBD><ECA4BF>³<EFBFBD>Ǥϡ<C7A4>
<20><><EFBFBD>ʤ<EFBFBD><CAA4>Ϥ<EFBFBD><CFA4><EFBFBD><EFBFBD>˻<EFBFBD><CBBB><EFBFBD><EFBFBD><EFBFBD><EFBFBD>Τ<EFBFBD><CEA4>ܤˤ<DCA4><CBA4><EFBFBD><EFBFBD>Ϥ<EFBFBD><CFA4>Ǥ<EFBFBD><C7A4><EFBFBD></para>
<screen> &prompt.user; <userinput>ifconfig</userinput>
<emphasis>(skipped...)</emphasis>
ppp0: flags=<replaceable>8010&lt;POINTOPOINT,MULTICAST&gt; mtu 1500</replaceable>
<emphasis>(skipped...)</emphasis>
tun0: flags=<replaceable>8051&lt;UP,POINTOPOINT,RUNNING,MULTICAST&gt; mtu 1524</replaceable>
<emphasis>(IPv6 stuff skipped...)</emphasis>
inet <replaceable>xxx.xxx.xxx.xxx</replaceable> --&gt; <replaceable>xxx.xxx.xxx.xxx</replaceable> netmask <replaceable>0xffffff00</replaceable>
Opened by PID <replaceable>xxxxx</replaceable>
<emphasis>(skipped...)</emphasis></screen>
</answer>
</qandaentry>
</qandaset>
</sect1>
</article>