Re: PF firewall rules

2006-07-10 Thread Kian Mohageri
On 7/10/06, Michael Vince <[EMAIL PROTECTED]> wrote: Dmitry Andrianov wrote: So to block to block IP 192.168.1.17 from connecting *out* to anything on the internet I have to use a "block in" statement and there is no other way of doing this rule? block in quick on $int_if proto { tcp, udp, icmp

Re: PF firewall rules

2006-07-10 Thread Daniel Hartmeier
On Tue, Jul 11, 2006 at 03:40:38PM +1000, Michael Vince wrote: > That still doesn't really answer my question and I also am looking for a > flags example of what would guarantee to provide the desired behavior. If you don't specify a 'flags' option, the rule will match any flags combination. Do

Re: PF firewall rules

2006-07-10 Thread Michael Vince
Dmitry Andrianov wrote: Hello. I might remove these in the future but just want to at least do some testing on a firewall setup for many reasons such as it has 2 separate links and want to try changing between the links/routes without affecting state. I'm not sure how this should w

Snortsam.

2006-07-10 Thread Gilberto Villani Brito
Hi, How can I compile snortsam for PF??? I compile in my server, but without PF plugin: SnortSam, v 2.50. Copyright (c) 2001-2006 Frank Knobbe <[EMAIL PROTECTED]>. All rights reserved. Plugin 'fwsam': v 2.4, by Frank Knobbe Plugin 'fwexec': v 2.4, by Frank Knobbe Plugin 'pix': v 2.8, by Frank Kno

Current problem reports assigned to you

2006-07-10 Thread FreeBSD bugmaster
Current FreeBSD problem reports Critical problems Serious problems S Submitted Tracker Resp. Description --- o [2005/06/15] kern/82271 pf [pf] cbq scheduler cause bad latency f [2005/09/13] kern/8607