blob: ef99184cf2259886bbddeb4ae7cc494c52f9c111 (
plain)
1
2
3
4
5
6
7
8
9
10
11
|
# $NetBSD: example.8,v 1.1.1.1 2012/03/23 21:20:15 christos Exp $
#
# block all incoming TCP connections but send back a TCP-RST for ones to
# the ident port
#
block in proto tcp from any to any flags S/SA
block return-rst in quick proto tcp from any to any port = 113 flags S/SA
#
# block all inbound UDP packets and send back an ICMP error.
#
block return-icmp in proto udp from any to any
|