blob: 7e871bae597539b9e7340580a400bf67666acbb1 (
plain)
1
2
3
4
5
6
7
8
9
10
11
12
13
|
# $NetBSD: example.7,v 1.1.1.1 2012/03/23 21:20:15 christos Exp $
# block all ICMP packets.
#
block in proto icmp all
#
# allow in ICMP echos and echo-replies.
#
pass in on le1 proto icmp from any to any icmp-type echo
pass in on le1 proto icmp from any to any icmp-type echorep
#
# block all ICMP destination unreachable packets which are port-unreachables
#
block in on le1 proto icmp from any to any icmp-type unreach code 3
|