Re: ipf question

看板FB_security作者時間21年前 (2005/01/20 21:34), 編輯推噓0(000)
留言0則, 0人參與, 最新討論串3/4 (看更多)
["Followup-To:" header set to muc.lists.freebsd.security.] 聚rick Mechlerꬠ<emechler@techometer.net> wrote: > :: pass in quick on xl0 proto tcp/udp from any to any port 137 <> 139 keep > :: state > > This line allows in all tcp and udp ports less than 137 and greater than > 139, which is exactly what you don't want :) If you want to allow all > ports 137-139 inclusive, you need to change it to > > ... port 136 >< 140 keep state > > The < and > operators are not inclusive. I know it has been defined like that. But why? Why wasn't an inclusive .. operator used? There must be a reason for this, but which one is it? _______________________________________________ freebsd-security@freebsd.org mailing list http://lists.freebsd.org/mailman/listinfo/freebsd-security To unsubscribe, send any mail to "freebsd-security-unsubscribe@freebsd.org"
文章代碼(AID): #11xxDc00 (FB_security)
文章代碼(AID): #11xxDc00 (FB_security)