-BEGIN PGP SIGNED MESSAGE-
Hash: SHA1
Jeremy Chadwick <[EMAIL PROTECTED]> wrote:
>
> > # pfctl -k 78.107.71.38
> > killed 1 states from 1 sources and 0 destinations
> > # pfctl -s state|grep 78.107.71.38
> > all udp 195.14.50.21:53 -> 78.107.71.38:42859 MULTIPLE:MULTIPLE
> Hmm, it
On Tue, Sep 09, 2008 at 09:20:20AM +0400, Dmitry Rybin wrote:
> === pf.conf ===
> ext_if="bge0"
>
> block in quick from
> pass out
> pass in
> === pf.conf ===
> # pfctl -f
> # pfctl -t dnsflood -Tadd 78.107.71.38
> # pfctl -t dnsflood -Tadd 89.179.195.34
> # pfctl -t dnsflood -Tshow
> 78.107.71.3
On Mon, Sep 08, 2008 at 01:04:07PM -0500, David DeSimone wrote:
> Dmitry Rybin <[EMAIL PROTECTED]> wrote:
> >
> > PF doesn't block some IP
> >
> > === pf.conf ===
> >
> > ext_if="bge0"
> > table { 78.107.71.38 89.179.195.34 }
> >
> > block quick from
> > pass out
> > pass in
> > === pf.con
-BEGIN PGP SIGNED MESSAGE-
Hash: SHA1
Dmitry Rybin <[EMAIL PROTECTED]> wrote:
>
> PF doesn't block some IP
>
> === pf.conf ===
>
> ext_if="bge0"
> table { 78.107.71.38 89.179.195.34 }
>
> block quick from
> pass out
> pass in
> === pf.conf ===
>
> # pfctl -e -f /etc/pf.conf
>
>
On Mon, Sep 08, 2008 at 05:45:44PM +0200, Jille wrote:
> Dmitry Rybin wrote:
> > PF doesn't block some IP
> >
> > === pf.conf ===
> >
> > ext_if="bge0"
> > table { 78.107.71.38 89.179.195.34 }
>
> Afaik you need to separate them with a comma (,)
This is incorrect. You can use a comma or a
Hello,
Dmitry Rybin wrote:
> PF doesn't block some IP
>
> === pf.conf ===
>
> ext_if="bge0"
> table { 78.107.71.38 89.179.195.34 }
Afaik you need to separate them with a comma (,)
-- Jille
>
> block quick from
> pass out
> pass in
> === pf.conf ===
>
> # pfctl -e -f /etc/pf.conf
>
> #
On Mon, Sep 08, 2008 at 08:51:39AM -0700, Jeremy Chadwick wrote:
> On Mon, Sep 08, 2008 at 07:13:35PM +0400, Dmitry Rybin wrote:
> > PF doesn't block some IP
> >
> > === pf.conf ===
> >
> > ext_if="bge0"
> > table { 78.107.71.38 89.179.195.34 }
> >
> > block quick from
> > pass out
> > pas
On Mon, Sep 08, 2008 at 07:13:35PM +0400, Dmitry Rybin wrote:
> PF doesn't block some IP
>
> === pf.conf ===
>
> ext_if="bge0"
> table { 78.107.71.38 89.179.195.34 }
>
> block quick from
> pass out
> pass in
> === pf.conf ===
>
> # pfctl -e -f /etc/pf.conf
>
> # tcpdump -netxi bge0 host