How to block HTTP packets going to 0.0.0.0 via proxy

Spenst, Aleksej Aleksej.Spenst at harman.com
Fri Oct 7 15:22:14 UTC 2011


Hi,

my browser goes online via proxy.
So, when I type http://0.0.0.0 in my browser I see in wireshark the following:

     Source                   Destination          Protocol                      Info
172.16.102.100        172.16.2.17             HTTP           GET http://0.0.0.0/ HTTP/1.1

That is the http GET request with the 0.0.0.0 IP address is sent to my proxy 172.16.2.17.
I do not want these requests to go to proxy. How can I block such requests with pf rules?

I could easily write a rule to block all packets directly going to IP 0.0.0.0, but in case with proxy, I don't know how to block such requests.

Thanks for any help.

Regards,
Aleks.


More information about the freebsd-pf mailing list