PF default to deny

2005-09-26 Thread Matt Juszczak
other ideas on what I can check? 2) Is there a way to set pf to default to deny? That way, if I disable it for testing, it wont kick my existing SSH session out (I'll have keep state set), but it will DENY any new connections. I'd rather have to go to the colo place cause I messed up then get

Re: PF default to deny

2005-09-26 Thread Peter N. M. Hansteen
Matt Juszczak [EMAIL PROTECTED] writes: 2) Is there a way to set pf to default to deny? block all as your first filtering rule, followed by explicit pass rules for the stuff you want to pass. I thought most of the howtoish docs out there recommended that approach, but here at least is one