On 6/5/05, Giorgos Keramidas <[EMAIL PROTECTED]> wrote: ... > I'm not sure if pf does this already. Even if it doesn't though, > it may be possible to write a transparent proxy that limits the > connections per uid/gid. The support for transparent proxies in > pf is awesome :-) I've found this on pf.conf(5) manpage: STATEFUL TRACKING OPTIONS All three of keep state, modulate state and synproxy state support the following options:
max _number_ Limits the number of concurrent states the rule may create. When this limit is reached, further packets matching the rule that would create state are dropped, until existing states time out. Thank you Giorgios Bye -- Name: Riccardo Giuntoli Email: [EMAIL PROTECTED] Homepage: http://www.luxoro.org/ Location: Genova, Italy 6BONE Handle: RG581-6BONE PGP Key: 0x67123739 PGP Fingerprint: CE75 16B5 D855 842F AB54 FB5C DDC6 4640 6712 3739 Key server: hkp://wwwkeys.eu.pgp.net _______________________________________________ freebsd-questions@freebsd.org mailing list http://lists.freebsd.org/mailman/listinfo/freebsd-questions To unsubscribe, send any mail to "[EMAIL PROTECTED]"