I looked at the site:

http://lcamtuf.coredump.cx/p0f-help/

There isn't any updated signature file available at this time right?

I know there is a new beta version of the p0f there.

Just wondering?

I also see in the docs that:

# KEEP IN MIND: Some packet firewalls configured to normalize outgoing
# traffic (OpenBSD pf with "scrub" enabled, for example) will, well,
# normalize packets. Signatures will not correspond to the originating
# system (and probably not quite to the firewall either).

So, does this mean that using pf scrub would also affect in the inbound side as well? Above it said outgoing. So, does it mean that scrub should never be use as well with osfp in a pf configuration as inbound.

Reply via email to