Skip site navigation (1)Skip section navigation (2)
Date:      Fri, 16 Nov 2007 15:16:35 +0100
From:      Daniel Hartmeier <daniel@benzedrine.cx>
To:        "N. Ersen SISECI" <siseci@gmail.com>
Cc:        freebsd-pf@freebsd.org
Subject:   Re: Nat Pass and PF Default Rule
Message-ID:  <20071116141635.GE29432@insomnia.benzedrine.cx>
In-Reply-To: <473D9922.4010207@gmail.com>
References:  <473D9922.4010207@gmail.com>

next in thread | previous in thread | raw e-mail | index | archive | help
On Fri, Nov 16, 2007 at 03:20:34PM +0200, N. Ersen SISECI wrote:

> I changed PF's default rule in kernel (pf_ioctl.h). And than i restarted
> my server.

Uh, if you do that you deal with the fallout yourself ;)

Seriously, there is no reason to do that. Adding a block rule to your
ruleset does the trick of defaulting to blocking.

Daniel



Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?20071116141635.GE29432>