Ask to AI to configure IPFW on FreeBSD. It's going to invent if not everything, but almost of it introducing all possible kind of issues. At some point take the AI and put it down to the water closet as the best choice of your life.
Do you want to use IPFW on FreeBSD? Read the f...g manual. 🙂

#freebsd #ipfw #firewall #ai

FreeBSD 15.0 has a bug: some I/O error issue loading IP/network addresses into IPFW tables. This doesn't happen with FreeBSD 14.3. I had to downgrage to 14.3 version to fix it. Now it works perfectly.

#freebsd #bug #ipfw #network

#FreeBSD #ipfw firewall kernel module now builds with -ftrivial-var-auto-init=zero on #HardenedBSD 16-CURRENT: https://git.hardenedbsd.org/hardenedbsd/HardenedBSD/-/commit/7653c25fa562589b56328c4342a06134506a57fc
HBSD: Opt ipfw into -ftrivial-var-auto-init=zero (7653c25f) · Commits · HardenedBSD / HardenedBSD · GitLab

Signed-off-by: Shawn Webb MFC-to: 15-STABLE

GitLab

#TIL: #ipfw’s “me” does not include the local network's broadcast address.

I know this because I’m building the bespoke packet filter for a new system (to characterize+quiet its real background noise) and had a long WTF session because I missed the last octet.

#Sysadminnery #FreeBSD #InfoSec

Do you want to know how to do firewalling and Traffic shaping/Bandwidth control on Freebsd ? Then follow below link

https://amitdhanani.in/2025/02/10/how-to-setup-firewall-and-traffic-shaping-with-ipfw-on-freebsd/

#Freebsd #ipfw #dummynet #trafficshaping #bandwidth #Firewall

How to Setup Firewall and Traffic shaping with ipfw on Freebsd?

To setup Firewall and Traffic shaping on Freebsd using ipfw and dummynet module please check below git repo. I used traffic shaping for ssh using ipfw firewall with dummynet module

IT Consulting & IT Training
Has anyone gotten sslh transparent mode working on #FreeBSD with #pf instead of #ipfw ?

#freebsd users of various usecases, not wanting to start a firewall war, but I've noticed in the last years that #ipfw was not advertised much compared to #pf. is there consensus or pseudo-official recommendation for the future?

AFAIK ipfw is the only one to have in-kernel NAT (which at some point was the only way for me to make RTSP streams work) and had previously a performance advantage, but pf obviously make rules nicer being higher level...

Timeline | FreeBSD Foundation

FreeBSD Foundation | A non-profit organization dedicated to supporting and building the FreeBSD Project

After seeing more about that Apple scanning thing, and ye olde #LittleSnitch I couldn't help but wonder:

Hasn't someone somewhere come up with an alternative to Little Snitch in the libre/free open source software world? After all, #macOS uses #pf (from #OpenBSD) these days (though previously it was using #ipfw from #FreeBSD).

The answer is yes: #LuLu: https://objective-see.org/products/lulu.html

The associated #GitHub repo: https://github.com/objective-see/LuLu

It has a #Homebrew formula, no #MacPort, I may have to fix that.

Objective-See: LuLu

While where on the topic of #Firewalls:

If there’s anyone out there who needs a primer to #FreeBSD’s #IPFW, a wrote a little tutorial a while back.

“Protecting a single host with IPFW”

https://hsm.tunnel53.net/article/ipfw-single-host/

Enjoy 🤓

#HyperSuperMeta

Protecting a single host with IPFW | Hyper Super Meta