Re: PF syntax error

2008-10-15 Thread Peter Clark
Yury Michurin wrote: Hello, I have in my pf.conf: pass in proto tcp from ! to any port www flags S/SA synproxy state (max-src-conn 20, max-src-conn-rate 30/60, overload flush global) and it seems to work just fine... Regards, Yury. On Wed, Oct 15, 2008 at 7:00 PM, Peter Clark <[EMAIL PROT

Re: PF syntax error

2008-10-15 Thread Yury Michurin
Hello, I have in my pf.conf: pass in proto tcp from ! to any port www flags S/SA synproxy state (max-src-conn 20, max-src-conn-rate 30/60, overload flush global) and it seems to work just fine... Regards, Yury. On Wed, Oct 15, 2008 at 7:00 PM, Peter Clark <[EMAIL PROTECTED]> wrote: > Hello, >

Re: PF syntax error

2008-10-15 Thread Erik Osterholm
On Wed, Oct 15, 2008 at 12:00:50PM -0500, Peter Clark wrote: > Hello, > > I am not sure if I should be here or over at a pf specific list but here > is my problem. > > I am trying my hand at pf on a 7.0-p5 RELEASE box and one rule is giving > me problems. > > pass in quick on $ext_if proto tcp

PF syntax error

2008-10-15 Thread Peter Clark
Hello, I am not sure if I should be here or over at a pf specific list but here is my problem. I am trying my hand at pf on a 7.0-p5 RELEASE box and one rule is giving me problems. pass in quick on $ext_if proto tcp from any to any port 22 flags S/SA \ (max-src-conn 15, max-src-conn-rate