From owner-freebsd-pf@FreeBSD.ORG Mon Mar 31 18:45:04 2008 Return-Path: Delivered-To: freebsd-pf@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2001:4f8:fff6::34]) by hub.freebsd.org (Postfix) with ESMTP id 9C3EC1065672 for ; Mon, 31 Mar 2008 18:45:04 +0000 (UTC) (envelope-from lists@qwirky.net) Received: from public.aci.on.ca (aci.on.ca [205.207.148.251]) by mx1.freebsd.org (Postfix) with ESMTP id 422F18FC16 for ; Mon, 31 Mar 2008 18:45:04 +0000 (UTC) (envelope-from lists@qwirky.net) Received: from (invalid client hostname: host address literal does not match remote client address)[127.0.0.1] ((no PTR matching greeting name)xtreme-54-62.dyn.aci.on.ca[24.137.213.62] port=1870) by public.aci.on.ca([205.207.148.251] port=25) via TCP with esmtp (1295 bytes) (sender: ) id for ; Mon, 31 Mar 2008 14:33:21 -0400 (EDT) (Smail-3.2.0.122-Pre 2005-Nov-17 #1 built 2007-Apr-30) Message-ID: <47F12E99.8000805@qwirky.net> Date: Mon, 31 Mar 2008 14:34:01 -0400 From: Jeff Royle User-Agent: Thunderbird 2.0.0.12 (Windows/20080213) MIME-Version: 1.0 To: freebsd-pf@freebsd.org References: <47F0F131.1070904@gmail.com> In-Reply-To: <47F0F131.1070904@gmail.com> Content-Type: text/plain; charset=ISO-8859-1; format=flowed Content-Transfer-Encoding: 7bit X-Antivirus: avast! (VPS 080330-0, 30/03/2008), Outbound message X-Antivirus-Status: Clean Cc: Subject: Re: How to block Domain X-BeenThere: freebsd-pf@freebsd.org X-Mailman-Version: 2.1.5 Precedence: list Reply-To: lists@qwirky.net List-Id: "Technical discussion and general questions about packet filter \(pf\)" List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Mon, 31 Mar 2008 18:45:04 -0000 Ken wrote: > PF how to block domain. You could do something like this: table persist file "/path/to/file/restricted" block in log quick on $ext_if proto { tcp, udp } from to any This way you can just edit the file and add in what you wish to block. Then you simply have to run pfctl -Tl -f /etc/pf.conf to load in your additions. Cheers, Jeff