Skip site navigation (1)Skip section navigation (2)
Date:      Thu, 16 Sep 2004 03:49:51 -0000
From:      Bruno Afonso <brunomiguel@dequim.ist.utl.pt>
To:        pf4freebsd@freelists.org
Subject:   [pf4freebsd] Re: pfaltq-5.1.0.4 problem using fingerprinting
Message-ID:  <3F54A64B.6090404@dequim.ist.utl.pt>
In-Reply-To: <3F54A3F9.3010101@dequim.ist.utl.pt>
References:  <3F54A3F9.3010101@dequim.ist.utl.pt>

next in thread | previous in thread | raw e-mail | index | archive | help
Bruno Afonso wrote:

> All seems to be working fine including AltQ integration. Only a minor 
> glitch when I do ifconfig. (box reboots... works perfectly fine on 
> another 5.1 box. Probably a kernel option. Will do some more research on 
> this...)
> 
> Anyway, passive fingerprinting may have a bug,
> This is the important rule in question:
> 
> #ssh
> pass in on $ext_if proto tcp from any os Windows to $main_ip port 22 
> modulate state queue(interact_bulk,interact_ack)
> 
> Without the "os Windows" everything works fine. And I am coming in from 
> a Windows box as tcpdump shows:

To make it clear, it _never_ allows my remote windows box to log in.






Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?3F54A64B.6090404>