Commit graph

202 commits

Author SHA1 Message Date
Maxim Konovalov
0a04ec008f Typos fixed.
PR:		222351
Submitted by:	Lubos Boucek
2017-09-15 10:14:48 +00:00
Benedict Reuschling
639d2dbb23 Replace the link to the scrub documentation again
with the one in Peter Hansteen's pf tutorial.

Suggested by:	wblock
2017-02-04 09:47:56 +00:00
Benedict Reuschling
88240eff4a Replace a dead link about pf scrub (pakcet normalization)
with one that works.

PR:		212942
Submitted by:	nsirano@gmail.com
Sponsored by:	Brussels FreeBSD Devsummit 2017
2017-02-03 15:52:50 +00:00
Maxim Konovalov
e4ced6076c o A rule for the time service in the ipfw example was replaced by NTP
in r49600.  The "setup" keyword removed now as it is TCP specific.

Approved by:	wblock
2017-01-04 18:42:26 +00:00
Warren Block
f9a0848f46 NTP is UDP port 123.
PR:		213365
Submitted by:	Tim Moore <tmoore@iXsystems.com>
Reported by:	petri.riihikallio@metis.fi
Sponsored by:	iXsystems
Differential Revision:	https://reviews.freebsd.org/D8375
2016-10-28 15:31:21 +00:00
Jason Helfman
9d20e8deb9 - remove deprecated call and update supported method
PR:		204829
Submitted by:	c.brinkhaus@t-online.de
Differential Revision:	https://reviews.freebsd.org/D5434
2016-02-26 16:53:25 +00:00
Jason Helfman
2daccc4084 - addres pipe symbol missing intable of useful pfctl options
PR:		206764
Reported by:	c.brinkhaus@t-online.de
Approved by:	wblock (mentor)
Differential Revision:	https://reviews.freebsd.org/D5144
2016-01-30 22:10:46 +00:00
Dru Lavigne
427a719fe5 Remove reference to 8.x from Firewalls chapter. 2015-10-05 13:32:39 +00:00
Dru Lavigne
b307150e96 Remove redirected URL.
Submitted by: Patrick Lindblad
Sponsored by: Essen DevSummit Hackathon
2015-07-26 13:52:25 +00:00
Jason Helfman
3edf504373 - remove directory class
Differential Revision:	https://reviews.freebsd.org/D1747
Approved by:	wblock (mentor)
2015-02-15 05:37:20 +00:00
Benedict Reuschling
3bea668d72 Add two spaces at the start of a sentence where needed.
This is a whitespace change that translators can ignore.

Obtained from:	    igor -n invocation
2014-12-03 17:16:21 +00:00
Benedict Reuschling
fffcb430cb Make a big sweep for overlong lines in the handbook and fix them.
Translators can ignore this.

Obtained from:	igor(8) output
2014-12-02 12:00:32 +00:00
Warren Block
e5e6dae2ee Recover lost <replaceable> tags. 2014-03-28 03:38:47 +00:00
Dru Lavigne
5bbd740f60 Fix grammo.
Sponsored by: iXsystems
2014-03-05 20:29:33 +00:00
Dru Lavigne
efb9d8d7e9 White space fix only. Translators can ignore.
Sponsored by: iXsystems
2014-03-05 20:28:46 +00:00
Dru Lavigne
3b05ed577e Section on IPFW NAT now reads better.
Unfortunately, it is outdated as of 7.x.
Will need to review EXAMPLES in ipfw(8) and address PR121952.
Will hold off rest of commits to this chapter until someone gets
a chance to do so.

Sponsored by: iXsystems
2014-03-04 20:10:55 +00:00
Dru Lavigne
85ecdde282 Start to clarify the NAT ruleset by comparing it to the
previous example.
The next commit will finish describing the rule modifications
and what to watch out for so that NAT works.

Sponsored by: iXsystems
2014-02-27 18:05:03 +00:00
Dru Lavigne
69b6fb60d1 Remove extra space. Translators can ignore.
Submitted by: bjk
Sponsored by: iXsystems
2014-02-27 16:56:07 +00:00
Dru Lavigne
8eb756379b Fix some grammos.
Submitted by: bjk
Sponsored by: iXsystems
2014-02-27 16:55:09 +00:00
Dru Lavigne
0f6e87bfc4 White space fix only. Translators can ignore.
Sponsored by: iXsystems
2014-02-26 23:44:33 +00:00
Dru Lavigne
08760abfe8 Initial merge of IPFW NAT content.
Tomorrow's commits will review the technical content.

Sponsored by: iXsystems
2014-02-26 23:03:12 +00:00
Dru Lavigne
64070fd286 Prep work for merging Advanced Networking NAT section
into IPFW Configuring NAT section.
Move Configuring NAT to after Example Ruleset.
Next commit will start to merge the deleted content
into the NAT section.

Sponsored by: iXsystems
2014-02-26 22:19:04 +00:00
Dru Lavigne
c7a70e1afa Move Example Ruleset to under Rule Syntax.
Cleanup the Example Ruleset.
At some point, the ping rules and the incoming HTTP/SSH rules should be tightened.

Sponsored by: iXsystems
2014-02-26 21:53:13 +00:00
Dru Lavigne
179b363ca3 Modernize the IPFW Rule Syntax section.
Sponsored by: iXsystems
2014-02-26 20:32:11 +00:00
Dru Lavigne
58286b6276 Initial pass through enabling IPFW.
Shuffle IPFW command to later in the chapter, might get shuffled again.
Begin prep work for syntax section.

Sponsored by: iXsystems
2014-02-26 17:05:28 +00:00
Dru Lavigne
a702301297 White space fix only. Translators can ignore.
Sponsored by: iXsystems
2014-02-25 19:40:13 +00:00
Dru Lavigne
ee993cf4cd Start editorial review. To be continued tomorrow.
Sponsored by: iXsystems
2014-02-25 18:57:40 +00:00
Dru Lavigne
6f7189bc9e Initial prep work for IPFW section so that it starts to match layout
of other firewall sections.
Many more commits to come.

Sponsored by: iXsystems
2014-02-25 17:59:16 +00:00
Dru Lavigne
12caad51ae Move the IPF chapter after the IPFW chapter.
Sponsored by: iXsystems
2014-02-25 17:38:33 +00:00
Dru Lavigne
7b684bf428 Finish initial editorial review of IPF chapter.
Sponsored by: iXsystems
2014-02-25 17:30:26 +00:00
Dru Lavigne
5bb694d459 Finish editorial pass through IPF NAT.
Comment out symbolic substitution section for now.
It is confusing as written and may no longer be needed with IPF's new syntax.

Sponsored by: iXsystems
2014-02-25 15:57:17 +00:00
Dru Lavigne
c9a9287d57 White space fix only. Translators can ignore.
Sponsored by: iXsystems
2014-02-24 04:16:59 +00:00
Dru Lavigne
07e37e24de Editorial pass through first 1/2 of IPF NAT section.
Sponsored by: iXsystems
2014-02-23 20:18:56 +00:00
Dru Lavigne
0fc636eba0 Initial shuffle to improve flow of IPF NAT section.
Next commit will review actual content.

Sponsored by: iXsystems
2014-02-23 16:11:36 +00:00
Dru Lavigne
35a022c67c Fix grammo.
Sponsored by: iXsystems
2014-02-22 03:14:51 +00:00
Dru Lavigne
984d8c3dbb White space fix only. Translators can ignore.
Sponsored by: iXsystems
2014-02-22 03:13:44 +00:00
Dru Lavigne
be4fc36d5e Cleanup sample ruleset.
Move stuff that applies to all firewalls to Concepts section.

Sponsored by: iXsystems
2014-02-22 02:43:03 +00:00
Dru Lavigne
e77439a35c Move some stuff that applies to all firewalls to Concepts section.
Finish modernization pass through IPF Rulesets.
Next commit will look at the provided examples.

Sponsored by: iXsystems
2014-02-22 01:04:38 +00:00
Dru Lavigne
761c663a46 Modernize the next bit of syntax. More to come.
Sponsored by: iXsystems
2014-02-21 20:28:01 +00:00
Dru Lavigne
52b27f712c This section is reeeeeally out of date.
Modernize the first few keywords. Much more to come.

Sponsored by: iXsystems
2014-02-21 18:39:20 +00:00
Dru Lavigne
a9db80d1ca Prep work for edits on IPF rulesets.
Move paragraphs that apply to all firewalls to Firewall Concepts section.
That section will be reviewed last, to make sure it includes the concepts covered in all the firewalls.
Move how to load ruleset to previous section to match layout of PF firewall section.
Next up, review ruleset syntax.

Sponsored by: iXsystems
2014-02-21 17:50:51 +00:00
Dru Lavigne
c228bdaee0 Fix tags.
Sponsored by: iXsystems
2014-02-21 00:11:57 +00:00
Dru Lavigne
413e450070 Fix typo.
Submitted by: wblock
Sponsored by: iXsystems
2014-02-19 22:33:27 +00:00
Dru Lavigne
2c7dceeffe Fix grammo.
Sponsored by: iXsystems
2014-02-19 22:05:18 +00:00
Dru Lavigne
ec7e896314 White space fix only. Translators can ignore.
Sponsored by: iXsystems
2014-02-19 21:58:48 +00:00
Dru Lavigne
dd0a14165c Initial editorial pass through intro of this chapter.
Sponsored by: iXsystems
2014-02-19 21:22:40 +00:00
Dru Lavigne
0f513f358f More shuffling to improve flow.
To be followed by a bunch of commits which look at the actual tech content.

Sponsored by: iXsystems
2014-02-19 20:38:58 +00:00
Dru Lavigne
5cfc0defb0 Initial shuffle to improve the flow of this chapter.
Much, much more to come.

Sponsored by: iXsystems
2014-02-19 20:02:33 +00:00
Dru Lavigne
a4bb242dc7 White space fix only. Translators can ignore.
Sponsored by: iXsystems
2014-02-19 19:21:13 +00:00
Dru Lavigne
917364f5d4 Finish editorial pass through PF chapter.
Sponsored by: iXsystems
2014-02-19 18:32:15 +00:00