IPv4 Address:-
IPv6 Address:-
Service Provider:-
SSL Information:-
HTTP Protocol:-
Database:-
Web:-
Alternative to null-routing in FreeBSD (using IPFW) [24/May/2009]   Null Routing in FreeBSD     CARP in FreeBSD (HSRP/VRRP alternative)  

Instead of using null-routing, you can use IPFW to block the traffic (the advantages include being able to set the ICMP response type).  My favourite is to use "Communication prohibited by filter" response.

If you wanted to block 192.168.0.1 in this way, you would use:

/sbin/ipfw add 01000 unreach filter-prohib ip from 192.168.0.1 to me Copy

You can also adapt the above to only include certain types of traffic which is where it is more flexible than null-routing.

  Null Routing in FreeBSD     CARP in FreeBSD (HSRP/VRRP alternative)  
Copyright © 2024 Daniel Austin MBCS.
Proudly hosted using the FreeBSD operating system.
 
E-mail me
PGP Key
E-mail me
LOGGED IN
Login
padlock icon
LOGIN ERROR#123: random error here