Using 8.1 minimal install. Not connected to any network yet.
Setting up ipfw for first time, I am trying to understand, more than cookbook, what's I'm doing. Firewall_type is very clear, except in this regards: One type is filename, which I see is the full path to firewall rules. But then there is firewall_script which goes to a different file. They both seem to be rulesets, and it appears to me that what I want to use is firewall_scripts, not type filename, so that I can more conveniently modify and restart firewall while trying out rule creation, etc. This further leaves me wondering about type. Current I have set to "open", feel uncomfortable with that, would prefer "closed", but does it make any difference since I am opening the script file. Or, does this affect the tiny space during boot until the rules are in affect? My script file is working, as I can see the rules being displayed during boot.
1. For the student (me), should I use the script file over the filename?
2. If I use script, do I need firewall_type?
3. If I do use firewall_type and script, am I more correct in selecting "closed" until the script is running?
Thanks
Setting up ipfw for first time, I am trying to understand, more than cookbook, what's I'm doing. Firewall_type is very clear, except in this regards: One type is filename, which I see is the full path to firewall rules. But then there is firewall_script which goes to a different file. They both seem to be rulesets, and it appears to me that what I want to use is firewall_scripts, not type filename, so that I can more conveniently modify and restart firewall while trying out rule creation, etc. This further leaves me wondering about type. Current I have set to "open", feel uncomfortable with that, would prefer "closed", but does it make any difference since I am opening the script file. Or, does this affect the tiny space during boot until the rules are in affect? My script file is working, as I can see the rules being displayed during boot.
1. For the student (me), should I use the script file over the filename?
2. If I use script, do I need firewall_type?
3. If I do use firewall_type and script, am I more correct in selecting "closed" until the script is running?
Thanks