Re[2]: anchors - weirdness

2006-06-29 Thread Boris Polevoy
-Original Message- From: Daniel Hartmeier <[EMAIL PROTECTED]> To: David Diggles <[EMAIL PROTECTED]> Date: Thu, 29 Jun 2006 07:25:04 +0200 Subject: Re: anchors - weirdness > > There was a bug that caused anchors defined from sub-anchors with "load > anchor" statements to get defined dire

Re: blocking on scan attempts

2006-06-29 Thread Nikolay Kalev
You could try use some example rulesets that stops alot of scans: # Block bad tcp flags from malicious people and nmap scans block in log quick on $ext_if proto tcp from any to any flags /S block in log quick on $ext_if proto tcp from any to any flags /SFRA block in log quick on $ext_if proto tcp

Re: blocking on scan attempts

2006-06-29 Thread Nikolay Kalev
> # Block bad tcp flags from malicious people and nmap scans > block in log quick on $ext_if proto tcp from any to any flags /S > block in log quick on $ext_if proto tcp from any to any flags /SFRA > block in log quick on $ext_if proto tcp from any to any flags /SFRAU > block in log quick on $ext_