FreeBSD Security Advisory FreeBSD-SA-14:08.tcp

Mike Tancsa mike at sentex.net
Wed Apr 30 13:56:52 UTC 2014


On 4/30/2014 12:35 AM, FreeBSD Security Advisories wrote:
> IV.  Workaround
>
> It is possible to defend to these attacks by doing traffic normalization
> using a firewall.  This can be done by including the following /etc/pf.conf
> configuration:
>
> 	scrub in all

Hi,
	Is this the only pf option that will work, or is
scrub fragment reassemble
sufficient ?

	---Mike


-- 
-------------------
Mike Tancsa, tel +1 519 651 3400
Sentex Communications, mike at sentex.net
Providing Internet services since 1994 www.sentex.net
Cambridge, Ontario Canada   http://www.tancsa.com/


More information about the freebsd-security mailing list