Skip site navigation (1)Skip section navigation (2)
Date:      Fri, 7 Oct 2011 17:11:18 +0200
From:      "Spenst, Aleksej" <Aleksej.Spenst@harman.com>
To:        "'freebsd-pf@freebsd.org'" <freebsd-pf@freebsd.org>
Subject:   How to block HTTP packets going to 0.0.0.0 via proxy
Message-ID:  <20290C577F743240B5256C89EFA753810D28E8E174@HIKAWSEX01.ad.harman.com>

next in thread | raw e-mail | index | archive | help
Hi,

my browser goes online via proxy.
So, when I type http://0.0.0.0 in my browser I see in wireshark the followi=
ng:

     Source                   Destination          Protocol                =
      Info
172.16.102.100        172.16.2.17             HTTP           GET http://0.0=
.0.0/ HTTP/1.1

That is the http GET request with the 0.0.0.0 IP address is sent to my prox=
y 172.16.2.17.
I do not want these requests to go to proxy. How can I block such requests =
with pf rules?

I could easily write a rule to block all packets directly going to IP 0.0.0=
.0, but in case with proxy, I don't know how to block such requests.

Thanks for any help.

Regards,
Aleks.



Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?20290C577F743240B5256C89EFA753810D28E8E174>