Skip site navigation (1)Skip section navigation (2)
Date:      Thu, 26 Feb 2004 23:49:24 +0100 (CET)
From:      Wouter Clarie <rimshot@pandora.be>
To:        kientzle@acm.org
Cc:        Steve Kargl <sgk@troutmask.apl.washington.edu>
Subject:   Re: cvs commit: src/sys/contrib/pf/net if_pflog.cif_pflog.hif_pfsync.c src/sys/contrib/pf/netinet in4_cksum.c
Message-ID:  <Pine.BSO.4.56.0402262348410.22153@positron.local>
In-Reply-To: <403E75F1.2070302@kientzle.com>
References:  <Pine.NEB.3.96L.1040226150526.79901Y-100000@fledge.watson.org> <403E75F1.2070302@kientzle.com>

next in thread | previous in thread | raw e-mail | index | archive | help
On Thu, 26 Feb 2004, Tim Kientzle wrote:

> Dunno about pf, but neither ipfw nor ipf have one feature I've been
> looking for.  I'd like to be able to say something like:
> 
>    create set BLACKLIST
>    drop ip in BLACKLIST
> 
> where BLACKLIST is a user-defined and easily-modifiable set of arbitrary
> addresses.  Probably implemented via a hash-table or search tree.
>
> [snip]

Piece of cake for pf: http://www.openbsd.org/faq/pf/tables.html

Wouter



Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?Pine.BSO.4.56.0402262348410.22153>