Originally posted by: CRM
If you are AIX 5.3 and above ML5 (I think this is where it appeared) or AIX 6.1 then you can use TCP filters, this appeared with little fanfare.
See the AIX 5.3 differences guide addendum on
www.redbooks.ibm.com :
6.7 IPFilters open source ported (5300-05)
IPFilter is a software package that can be used to provide network address
translation (NAT) or firewall services. IPFilter Version 4.1.13 open source
software, has been ported to AIX 5L, consistent with the licensing presented on
the IP Filter Web site, whose URL is:
http://coombs.anu.edu.au/~avalon/ You can generate a rule using genflt, I dumped the smitty output:
/usr/sbin/genfilt -v 4 -a 'D' -s 'all' -m 'all' -g 'y' -c 'tcp' -o 'eq' -p '1234' -O 'any' -P '0' -r 'B' -w 'O' -l 'N' -t '0'
Once you have your filters defined you then need to start the tcp filters up, use
smitty ips4_start_stop
That is all I can remember off the top of my head, check out the manuals in the infocenter for more.
cheers
Chris
#AIX-Forum