TARPIT for pf/ipfw

Chuck Swiger cswiger at mac.com
Fri Jan 16 13:37:58 PST 2009


On Jan 16, 2009, at 3:50 AM, Eugene Perevyazko wrote:
> On Fri, Jan 16, 2009 at 12:20:21PM +0300, Alexey Ivanov wrote:
>> Is there any command identical to:
>>        iptables -A INPUT -p tcp -m tcp -dport 80 -j TARPIT
>>
>> If no, does anyone ever tried to implement this feature?
>
> I'm thinking on implementing it in ipfw but it'll be a week or two  
> later,
> when I will have some free time.

Note that net/honeyd and security/labrea offer somewhat similar  
functionality.

-- 
-Chuck



More information about the freebsd-net mailing list