make pf to detect and drop virus/malware packets

2011-03-02 Thread Richard Brendörfer
Hi, this is the first time when I write on mailing list. If this subject was discussed in the past please don't shoot me, just trow me a bone. I was wonder if pf can detect packets that match a signature/fingerprint of a virus, like it makes with the OS fingerprints. Let's assume that I start to

Re: make pf to detect and drop virus/malware packets

2011-03-02 Thread Richard Brendörfer
This look interesting, thanks. On Wed, Mar 2, 2011 at 11:25 PM, olli hauer wrote: > On 2011-03-02 21:51, Richard Brendörfer wrote: > > Hi, > > this is the first time when I write on mailing list. > > If this subject was discussed in the past please don't shoot me,

Re: Large table issue

2011-05-18 Thread Richard Brendörfer
Hi, try with *set limit table-entries number* in pf.vonf or split you table in 2 or 3 tables. On Wed, May 18, 2011 at 2:03 PM, quentin.narvor < quentin.nar...@ensi-bourges.fr> wrote: > I am trying to detect problems on hosts in my network : I want to detect > when a communication occurs with a co

Re: Large table issue

2011-05-18 Thread Richard Brendörfer
hange it into (values in bytes): kern.maxdsiz="1073741824" # Set the max data size (IN BYTES) Changes made to /boot/defaults/loader.conf will be effective after rebooting. On Wed, May 18, 2011 at 4:00 PM, quentin.narvor < quentin.nar...@ensi-bourges.fr> wrote: > On Wed, 18 May 2011