Re: Advice on pf no-sync

Previous message: [thread] [date] [author]
Next message: [thread] [date] [author]
From: David Gwynne
Date: Wednesday, December 8, 2010 - 12:37 am

i put no-sync on connections that are specific to a firewall. for example,
there is no point syncing states for tcp connections that have one end
terminated on the firewall, so on my firewalls i put no-sync on connections
going to and from relayd. if you have a network on one firewall but not the
other, there isnt much point syncing states to/from that network either.

cheers,
dlg

On 08/12/2010, at 2:15 PM, Devin Reade wrote:

Previous message: [thread] [date] [author]
Next message: [thread] [date] [author]

Messages in current thread:
Advice on pf no-sync, Devin Reade, (Tue Dec 7, 9:15 pm)
Re: Advice on pf no-sync, David Gwynne, (Wed Dec 8, 12:37 am)
Re: Advice on pf no-sync, Rafal Bisingier, (Wed Dec 8, 12:44 am)