On 3/2/07, Pedro Drimel Neto <[EMAIL PROTECTED]> wrote:
In a rule:

 pass in  on dc0 from 192.168.0.0/24 to any port www

If a webserver is running on firewall box, the network 192.168.0.0/24 will
access it. Is there another way to introduce this rule? Cause I don't want
that the network access the webserver on firewall box.

I think I understand.

You want to pass web traffic EXCEPT to the one on the firewall?

something like:
pass in on dc0 from 192.168.0.0/24 to !dc0 port wwww


Thanks and sorry if isn't in this list to talk about pf rules...
it is, but there's also a pf mailing list just google for that.

--Bryan

Reply via email to