[Oisf-users] Exceptions to IPFW divert rule in FreeBSD

Shirkdog shirkdog at gmail.com
Thu Sep 19 18:50:40 UTC 2013


Put the ssh rule before the divert rule. ipfw is evaluated in order.
---
Michael Shirk


On Thu, Sep 19, 2013 at 2:25 PM, Jose Carlos Álvarez
<jcalvarezvg at gmail.com> wrote:
> Hi all,
>
> I have made Suricata work in inline mode in FreeBSD 8, however I would
> like to add an exception to the divert rule:
>
> 110 divert 8000 ip from any to any via em0
>
> How can I exclude the SSH default port (22) from the divert rule above?
>
> Thank you.
> _______________________________________________
> Suricata IDS Users mailing list: oisf-users at openinfosecfoundation.org
> Site: http://suricata-ids.org | Support: http://suricata-ids.org/support/
> List: https://lists.openinfosecfoundation.org/mailman/listinfo/oisf-users
> OISF: http://www.openinfosecfoundation.org/



More information about the Oisf-users mailing list