Browse Source

pfsense init.d ipfw trick

pull/127/head
bol-van 3 years ago
parent
commit
793f4bb04f
  1. 5
      init.d/pfsense/zapret.sh

5
init.d/pfsense/zapret.sh

@ -6,11 +6,16 @@
kldload ipfw kldload ipfw
kldload ipdivert kldload ipdivert
# for older pfsense versions. newer do not have these sysctls
sysctl net.inet.ip.pfil.outbound=ipfw,pf sysctl net.inet.ip.pfil.outbound=ipfw,pf
sysctl net.inet.ip.pfil.inbound=ipfw,pf sysctl net.inet.ip.pfil.inbound=ipfw,pf
sysctl net.inet6.ip6.pfil.outbound=ipfw,pf sysctl net.inet6.ip6.pfil.outbound=ipfw,pf
sysctl net.inet6.ip6.pfil.inbound=ipfw,pf sysctl net.inet6.ip6.pfil.inbound=ipfw,pf
# required for newer pfsense versions (2.6.0 tested) to return ipfw to functional state
pfctl -d ; pfctl -e
# add ipfw rules and start daemon # add ipfw rules and start daemon
ipfw delete 100 ipfw delete 100

Loading…
Cancel
Save