[ previous ] [ next ] [ threads ]
 
 From:  "Chris Buechler" <cbuechler at gmail dot com>
 To:  "Molle Bestefich" <molle dot bestefich at gmail dot com>
 Cc:  m0n0wall at lists dot m0n0 dot ch
 Subject:  Re: even more dumb questions: anti-spoofing
 Date:  Thu, 25 May 2006 09:27:41 -0400
On 5/25/06, Molle Bestefich <molle dot bestefich at gmail dot com> wrote:
>
> What do I do with non-rfc-1918 networks inside the firewall?
> Manually add anti-spoof rules to the WAN interface rulebase?

That's done automatically as well.  Any internal networks, regardless
of whether they're public or private IP's, are dropped inbound on the
WAN.

Look at the actual ipf ruleset on status.php.

-Chris