question about max-src-conn and max-src-conn-rate

Greg Hennessy Greg.Hennessy at nviz.net
Thu Jul 16 08:09:07 UTC 2009


That converts the operation of PF into a PIX. :-)

I would tend to caveat the advice below with liberal use of tag and 'tagged' 


Greg

________________________________________
From: owner-freebsd-pf at freebsd.org [owner-freebsd-pf at freebsd.org] On Behalf Of Torsten Kersandt [torsten at cnc-london.net]
Sent: 16 July 2009 03:47
Cc: freebsd-pf at freebsd.org
Subject: RE: question about max-src-conn and max-src-conn-rate

HI
I know that many people disagree with this but I would not block any
outgoing requests front the gateway in the first place:
As in:
pass out quick keep state

regards
Torsten


More information about the freebsd-pf mailing list