We read every piece of feedback, and take your input very seriously.
To see all available qualifiers, see our documentation.
There was an error while loading. Please reload this page.
1 parent a8b71f6 commit 2268e76Copy full SHA for 2268e76
firewall.py
@@ -243,11 +243,11 @@ def do_ipfw(port, dnsport, subnets):
243
for swidth,sexclude,snet in sorted(subnets, reverse=True):
244
if sexclude:
245
ipfw('add', sport, 'skipto', xsport,
246
- 'log', 'tcp',
+ 'tcp',
247
'from', 'any', 'to', '%s/%s' % (snet,swidth))
248
else:
249
ipfw('add', sport, 'fwd', '127.0.0.1,%d' % port,
250
251
'from', 'any', 'to', '%s/%s' % (snet,swidth),
252
'not', 'ipttl', '42', 'keep-state', 'setup')
253
@@ -289,12 +289,12 @@ def do_ipfw(port, dnsport, subnets):
289
for ip in nslist:
290
# relabel and then catch outgoing DNS requests
291
ipfw('add', sport, 'divert', sport,
292
- 'log', 'udp',
+ 'udp',
293
'from', 'any', 'to', '%s/32' % ip, '53',
294
'not', 'ipttl', '42')
295
# relabel DNS responses
296
297
298
'from', 'any', str(dnsport), 'to', 'any',
299
300
0 commit comments