[ previous ] [ next ] [ threads ]
 From:  Brett Maxfield <maxfieb at spacenow dot net>
 To:  m0n0wall at lists dot m0n0 dot ch
 Subject:  stateful firewall rules
 Date:  Mon, 13 Sep 2004 15:05:22 +1000
Hi Guys.

I have to say monowall 1.1 is pretty neat :)

Although i have one question:

How can i create a stateful firewall rule (using the GUI) ?

In freebsd 4.X, i can add the keep-state flag on an outbound firewall 
rule to allow the return traffic to pass through the firewall 
automatically, without letting in all traffic on that port.

For example, with a stateful firewall rule i can allow ntp port 123/udp 
outbound, and then allow the response but only specifically from the 
destination host without having to open port 123 to every skriptkiddie 
on the internet.

So far, monowall has happily done everything i have asked :)