Skip site navigation (1)Skip section navigation (2)
Date:      Tue, 11 Feb 2014 17:07:21 +0200
From:      "skeletor@lissyara.su" <skeletor@lissyara.su>
To:        freebsd-pf@freebsd.org
Subject:   pf block IP immediately
Message-ID:  <52FA3CA9.30806@lissyara.su>

next in thread | raw e-mail | index | archive | help
Hello.
I have a FreeBSD 9.2 amd64 with pf (build in kernel).
Can pf block some IP (sessions) immediately? Next rule can block only 
new sessions, but currect open sessions stay open as long as they open by IP

block quick from X.X.X.X to any
block quick from any to X.X.X.X

Also, I can do pfctl -F sessions, but it flushes all sessions of all users.

tcpdrop not shown this sessions, because this is a nat sessions.

Thanks.



Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?52FA3CA9.30806>