Remote host replies to SYN+FIN

FreeBSD freebsd at optiksecurite.com
Thu Aug 7 18:47:55 UTC 2008


kalin m a écrit :
> 
> does anybody have any idea how to resolve this?
> 
> thanks..
> 
> 
> kalin m wrote:
>> hi all...
>> after setting up a pf rule set on one of newly installed freebsd 7 i 
>> did a scan with nessus 3 on that machine
>>
>> the result i got was like this one:
>> http://www.nessus.org/plugins/index.php?view=single&id=11618 how do 
>> 'fix' it using pf?...
>>
>>
>>
>> thanks...
>>
>>
Hi,

I think that you should look at the 'scrub' directive in pf.conf. I 
think that a 'scrub in all' should block that kind of malformed packets.

Martin



More information about the freebsd-questions mailing list