pf block question

John Brooks john at day-light.com
Tue Jun 7 12:12:40 GMT 2005


Are you sure the ruleset is loaded, and pf is enabled?

--
John Brooks
john at day-light.com 

> -----Original Message-----
> From: owner-freebsd-questions at freebsd.org
> [mailto:owner-freebsd-questions at freebsd.org]On Behalf Of Matt Rechkemmer
> Sent: Tuesday, June 07, 2005 1:43 AM
> To: questions at freebsd.org
> Subject: pf block question
> 
> 
> So, at the very top of my pf "filter" rules, I have these rules:
> 
> block drop in quick on fxp0 inet proto icmp from 1.3.3.7 to any
> block drop in quick on fxp0 inet proto tcp from 1.3.3.7 to any
> 
> 1.3.3.7 is a made up IP address ;-).  Even with this rule 
> present, pf allows
> traffic from the IP through.  I guess I'm a bit confused as to 
> why it isn't
> being dropped.  Since it has the "quick" keyword, shouldn't that take
> precedence over all other filter rules?
> 
> Any ideas?
> 
> --
> Matt Rechkemmer
> tiberius at trancell.org
> _______________________________________________
> freebsd-questions at freebsd.org mailing list
> http://lists.freebsd.org/mailman/listinfo/freebsd-questions
> To unsubscribe, send any mail to 
> "freebsd-questions-unsubscribe at freebsd.org"
> 


More information about the freebsd-questions mailing list