freebsd ipfw question

Mark Andrews marka at isc.org
Thu Feb 17 22:07:09 UTC 2022


Only you can know what is “normal" for your configuration.  Having more
that 1 TCP connection from a source at a time is not abnormal.  There is
no requirement to use existing TCP connections for other queries.

> On 18 Feb 2022, at 08:45, Randy Bush <randy at psg.com> wrote:
> 
> for some reason lost in time, i have the following in `/etc/ipfw.rules`
> on a freebsd system running bind9
> 
>    add allow tcp from any to me 53 limit src-addr 1 setup
>    add deny tcp from any to me 53
> 
> the results are
> 
>    01000  48358531   6390772849 allow tcp from any to me 53 setup limit src-addr 1 :default
>    01100    165225      9379997 deny tcp from any to me 53
> 
> is this about normal?
> 
> randy
> -- 
> Visit https://lists.isc.org/mailman/listinfo/bind-users to unsubscribe from this list
> 
> ISC funds the development of this software with paid support subscriptions. Contact us at https://www.isc.org/contact/ for more information.
> 
> 
> bind-users mailing list
> bind-users at lists.isc.org
> https://lists.isc.org/mailman/listinfo/bind-users

-- 
Mark Andrews, ISC
1 Seymour St., Dundas Valley, NSW 2117, Australia
PHONE: +61 2 9871 4742              INTERNET: marka at isc.org



More information about the bind-users mailing list