On Tue, Oct 23, 2007 at 02:55:41PM -0700, Rob wrote:
I don't have an = sign in my rule, either, i have it in pf.conf as:
pass in log proto tcp from any to any port ssh \
keep state (max-src-conn-rate 3/30, \
overload flush global)
but when i look at my rules with pfctl -sr it shows the =.
>
I want to pass ssh traffic by default, so a block rule won't be
terribly helpful.
>
Mine's pretty similar, if a bit more verbose. And I don't use
max-src-conn or queueing.
--david
>
| jjohansen | [AppArmor 39/45] AppArmor: Profile loading and manipulation, pathname matching |
| Vladislav Bolkhovitin | Re: Integration of SCST in the mainstream Linux kernel |
| Heiko Carstens | Re: -mm merge plans for 2.6.23 -- sys_fallocate |
| Andrew Morton | 2.6.23-rc6-mm1 |
git: | |
| Gerrit Renker | [PATCH 27/37] dccp: Integration of dynamic feature activation - part 2 (server side) |
| Evgeniy Polyakov | Re: [BUG] New Kernel Bugs |
| Jarek Poplawski | [PATCH] pkt_sched: Destroy gen estimators under rtnl_lock(). |
| David Miller | [GIT]: Networking |
