On 7/4/06, sonjaya <[EMAIL PROTECTED]> wrote:
How to blok ddos/Flooding/ssh brute attack with pf .
This subject has been pretty much beaten to death. In the list archives, you will find a myriad of solutions people use for this problem. Please read the archives before posting (and flogging this dead horse again). Personally, I use the max-src-conn-rate variant and a set of tables for addresses that should always get unimpeded access (to prevent a DoS against myself). See pf.conf(5) for more information. Cheers, Rogier -- If you don't know where you're going, any road will get you there.