Nasser Heidari

2008-05-29

using ippools in ipf – Solaris 10

Filed under: freebsd,Miscellaneous — Nasser Heidari @ 10:31
Tags: , ,

Solaris@root ~ # cat /etc/ipf/ippool.conf

table role = ipf type = tree number = 5
{ 192.168.18.0/24; 12.1.1.0/23 };

# ip range for local network
table role = ipf type = tree number = 10
{192.168.0.0/16; 172.16.0.0/16; 10.0.0.0/8; };

# ip range for XXX network
table role = ipf type = tree number = 12
{ 1.1.1.0/29; 2.2.2.0/21 };

Solaris@root ~ # cat /etc/ipf/ipf.conf

# Permit DNS Query

pass in quick on eri0 proto udp from pool/5 to 192.168.1.1/32 port = 53 keep state

pass in quick on eri0 proto udp from pool/12 to 192.168.1.1/32 port = 53 keep state

pass in quick on eri0 proto udp from pool/10 to 192.168.1.1/32 port = 53 keep state

Advertisements

Leave a Comment »

No comments yet.

RSS feed for comments on this post. TrackBack URI

Leave a Reply

Please log in using one of these methods to post your comment:

WordPress.com Logo

You are commenting using your WordPress.com account. Log Out / Change )

Twitter picture

You are commenting using your Twitter account. Log Out / Change )

Facebook photo

You are commenting using your Facebook account. Log Out / Change )

Google+ photo

You are commenting using your Google+ account. Log Out / Change )

Connecting to %s

%d bloggers like this: