From owner-freebsd-pf@FreeBSD.ORG Wed Nov 15 16:45:32 2006 Return-Path: X-Original-To: freebsd-pf@freebsd.org Delivered-To: freebsd-pf@freebsd.org Received: from mx1.FreeBSD.org (mx1.freebsd.org [216.136.204.125]) by hub.freebsd.org (Postfix) with ESMTP id 820D016A40F for ; Wed, 15 Nov 2006 16:45:32 +0000 (UTC) (envelope-from dan@langille.org) Received: from m21.unixathome.org (m21.unixathome.org [205.150.199.217]) by mx1.FreeBSD.org (Postfix) with ESMTP id 2338943D46 for ; Wed, 15 Nov 2006 16:45:32 +0000 (GMT) (envelope-from dan@langille.org) Received: from localhost (localhost [205.150.199.217]) by m21.unixathome.org (Postfix) with ESMTP id 803CFC374 for ; Wed, 15 Nov 2006 11:45:29 -0500 (EST) Received: from m21.unixathome.org ([205.150.199.217]) by localhost (m21.unixathome.org [205.150.199.217]) (amavisd-new, port 10024) with ESMTP id 02604-05 for ; Wed, 15 Nov 2006 11:45:24 -0500 (EST) Received: from bast.unixathome.org (bast.unixathome.org [70.26.229.230]) by m21.unixathome.org (Postfix) with ESMTP id EFFE9BEDD for ; Wed, 15 Nov 2006 11:45:23 -0500 (EST) Received: from [10.55.0.99] (wocker.unixathome.org [10.55.0.99]) by bast.unixathome.org (Postfix) with ESMTP id 8E7F9B854 for ; Wed, 15 Nov 2006 11:45:23 -0500 (EST) From: "Dan Langille" To: freebsd-pf@freebsd.org Date: Wed, 15 Nov 2006 11:45:23 -0500 MIME-Version: 1.0 Message-ID: <455AFDD3.28719.62D53A13@dan.langille.org> Priority: normal X-mailer: Pegasus Mail for Windows (4.31) Content-type: text/plain; charset=US-ASCII Content-transfer-encoding: 7BIT Content-description: Mail message body X-Virus-Scanned: by amavisd-new-20030616-p10 (Debian) at unixathome.org Subject: state table filled up? X-BeenThere: freebsd-pf@freebsd.org X-Mailman-Version: 2.1.5 Precedence: list List-Id: "Technical discussion and general questions about packet filter \(pf\)" List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Wed, 15 Nov 2006 16:45:32 -0000 Hi folks, Last night, FreshPorts et all shut down (in effect). I could still ping the box, outgoing email arrived overnight, but no incoming connections worked. e.g. http, smtp, etc. It was as if all incoming connections were ignored. I suspect this may have been my state table filling up. Rather than put my PF rules into the archives, I've posted them where they'll also be better formated: Have a look at http://www.langille.org/tmp/pf.rules Disclosure: I have removed a few rules that relate to non-publc services. -- Dan Langille : Software Developer looking for work my resume: http://www.freebsddiary.org/dan_langille.php