Re: PF, Bruteforceblocker .. (FreeBSD 6.0)

From: Peter N. M. Hansteen (peter@bgnett.no)
Date: Mon 29 May 2006 - 16:03:25 CEST


To: bsd-dk@bsd-dk.dk
Subject: Re: PF, Bruteforceblocker .. (FreeBSD 6.0)
From: peter@bgnett.no (Peter N. M. Hansteen)
Date: Mon, 29 May 2006 16:03:25 +0200


"Henrik J. Nielsen" <none@henrik--softy.dk.lh.bsd-dk.dk> writes:

> Jeg sider med en syntax fejl jeg ikke lige kan gejle, eftersom jeg langt
> fra er en ørn til PF..
>
> pf.conf ser sådan ud ..
> table brute persist file "/var/db/ssh-bruteforce"
> block in log quick proto tcp from brute to any port ssh

du trenger vel < foran og > bak tabellnavn i pf.conf, altså

table <brute> persist file "/var/db/ssh-bruteforce"
block in log quick proto tcp from <brute> to any port ssh

-- 
Peter N. M. Hansteen, member of the first RFC 1149 implementation team
http://www.blug.linux.no/rfc1149/ http://www.datadok.no/ http://www.nuug.no/
"First, we kill all the spammers" The Usenet Bard, "Twice-forwarded tales"
20:11:56 delilah spamd[26905]: 146.151.48.74: disconnected after 36099 seconds



This archive was generated by hypermail 2b30 : Wed 15 Nov 2006 - 18:24:59 CET