--- j knight <[EMAIL PROTECTED]> wrote:
> > scrub random-id
> > scrub fragment reassemble
> > scrub reassemble tcp
> > scrub out on $ppp max-mss 1440
> 
> These scrub rules aren't doing what you think
> they're doing. "scrub" is
> a rule, not an option such as the "set" parameters.
> The first matching
> scrub rule wins. pfctl -vvsr and see just which
> rules are having an
> affect.


Oops, you're right about that, Joel! Well, I condensed
my normalization rules down to 

scrub in all fragment reassemble random-id
scrub out on $ppp max-mss 1440

and my problem is now fixed. Thanks everyone who gave
input!


Serban Giuroiu
http://javatheory.net
Tired of spam?  Yahoo! Mail has the best spam protection around 
http://mail.yahoo.com 

Reply via email to