From owner-FreeBSD-users-jp@jp.freebsd.org  Wed Jan  3 02:52:01 2001
Received: (from daemon@localhost)
	by castle.jp.freebsd.org (8.9.3+3.2W/8.7.3) id CAA15265;
	Wed, 3 Jan 2001 02:52:01 +0900 (JST)
	(envelope-from owner-FreeBSD-users-jp@jp.FreeBSD.org)
Received: from sv01.geocities.co.jp (sv01.geocities.co.jp [210.153.89.155])
	by castle.jp.freebsd.org (8.9.3+3.2W/8.7.3) with ESMTP id CAA15260
	for <FreeBSD-users-jp@jp.freebsd.org>; Wed, 3 Jan 2001 02:52:01 +0900 (JST)
	(envelope-from ml1@geocities.co.jp)
Received: from mail.geocities.co.jp (mail.geocities.co.jp [210.153.89.137]) by sv01.geocities.co.jp (8.9.3+3.2W/3.7W) with ESMTP id CAA02369 for <FreeBSD-users-jp@jp.freebsd.org>; Wed, 3 Jan 2001 02:52:00 +0900 (JST)
Received: from UNKNOWN-DX (2Cust202.tnt1.urawa.jp.da.uu.net [63.34.121.202]) by mail.geocities.co.jp (1.3G-GeocitiesJ-3.3) with SMTP id CAA23403 for <FreeBSD-users-jp@jp.freebsd.org>; Wed, 3 Jan 2001 02:51:59 +0900 (JST)
Message-Id: <200101021751.CAA23403@mail.geocities.co.jp>
X-Sender: ml1@geocities.co.jp
X-Mailer: QUALCOMM Windows Eudora Pro Version 3.0.5-J (32)
Date: Wed, 03 Jan 2001 02:51:57 +0900
To: FreeBSD-users-jp@jp.freebsd.org
From: "Y.Nakayama" <ml1@geocities.co.jp>
Mime-Version: 1.0
Content-Type: text/plain; charset="ISO-2022-JP"
Reply-To: FreeBSD-users-jp@jp.freebsd.org
Precedence: list
X-Distribute: distribute version 2.1 (Alpha) patchlevel 24e+000315
X-Sequence: FreeBSD-users-jp 57975
Subject: [FreeBSD-users-jp 57975] IPFW or IP Filter ?
Errors-To: owner-FreeBSD-users-jp@jp.freebsd.org
Sender: owner-FreeBSD-users-jp@jp.freebsd.org
X-Originator: ml1@geocities.co.jp

$BCg;3$G$9!#(B
$B$?$S$?$S%9%_%^%;%s$,!"4v$D$+<ALd$G$9!#(B


[1]:
$BFC$K(B NAT(Gateway)$B$r;HMQ$7$J$$>l9g!"(B
IPFW $B$H!"(BIP Filter$B!"$I$A$i$,(B {$BJXMx(B, $BM-8z(B} $B$J$N$G$7$g$&$+!)(B

$B;d!"8D?ME*$K$O!"(B/usr/src/contrib/ipfilter/mkfilters $B$K$F!"(B
/etc/ipf.conf $B$,<+F0@8@.$5$l$k!"(BIP Filter $B$NJ}$,JXMx$=$&$@$H;W$&$N$G$9$,!"(B
$B<BMQE*$J$N$O$I$A$i$G$7$g$&$+!)(B
### $BMW$O9%$_$NLdBj$G$7$g$&$+!)(B

$B$A$J$_$K!"(Bserver $B>e$G$O!"(BApach$B!"(Bsendmail$B!"(Bftp$B!"(Bssh $B$r(B
$BF0:n$5$;$h$&$H;W$C$F$$$^$9!#(B


[2]:
$B$^$?!";W$C$?$N$G$9$,!"(B{IPFW, IP Filter} $B$r(B kernel $B$KAH$_9~$s$@>l9g!"(B
$B%"%/%;%9@)8B$NM%@h=g0L$O!"(B

/etc/{ipfw.conf, ipf.conf}
/etc/hosts.allow

$B$N$I$A$i$J$N$G$7$g$&$+!)(B


Y.Nakayama.

