Is there an upper limit to PF's tables?

Dave Horsfall dave at horsfall.org
Thu Jun 14 18:35:07 UTC 2018


I can't get access to kernel sauce right now, but I'm hitting over 1,000 
entries from woodpeckers[*] etc; is there some upper limit, or is it just 
purely dynamic?

   aneurin% freebsd-version
   10.4-RELEASE-p9

[*]

A fairly loose definition in the anti-spammer community, but it includes 
attempts every few *seconds* when they encounter my RFC-compliant banner, 
when I make 'em wait a bit for my 220, and those who regard 5xx as a 
challenge.

Perhaps I should consider an external firewall; at the moment the 
(consumer-grade) router allows only certain services to certain servers 
(and doesn't bother logging the rejects, much to my disgust) and its "IP 
blocking" simply doesn't work, so the mail server blocks the spammer IPs 
instead (entire countries where necessary).

-- Dave, who has been accused of being an "anti-spam nazi"


More information about the freebsd-pf mailing list