Re: pf og pass

From: Jesper Louis Andersen (none@jlouis--mongers.org.lh.bsd-dk.dk)
Date: Thu 04 Nov 2004 - 09:45:04 CET


From: "Jesper Louis Andersen" <none@jlouis--mongers.org.lh.bsd-dk.dk>
Date: Thu, 4 Nov 2004 09:45:04 +0100
To: bsd-dk@bsd-dk.dk
Subject: Re: pf og pass

Quoting Claus Guttesen (cguttesen@yahoo.dk):

> # incoming packets
> pass in quick on $ext_if proto tcp from any to $ext_if
> port www flags S/SA keep state # web

Din e-mailklient ombroed vist lidt mere end pfctl kan parse
der.

Jeg foretraekker at splitte reglerne lidt op i stil med:

pass in quick on $ext_if proto tcp \
        from any \
        to ($ext_if:0) port www \
        flags S/SA keep state

Men det er jo bare syntax.

-- 
< Keltus> .. now back to reading my /. and compiling my \
  l33t gentoo linux which makes it 5000% faster than \
  your lame not-even-a-real-OS computer. Uptime: 20000 days, 4 hours



This archive was generated by hypermail 2b30 : Wed 15 Nov 2006 - 18:24:46 CET