Skip site navigation (1)Skip section navigation (2)
Date:      Wed, 20 Aug 2008 10:39:02 -0400
From:      Chris Buechler <freebsd@chrisbuechler.com>
To:        Leslie Jensen <leslie@eskk.nu>, freebsd-pf@freebsd.org
Subject:   Re: port stealth mode?
Message-ID:  <48AC2C86.6060306@chrisbuechler.com>
In-Reply-To: <48AC266D.2030902@eskk.nu>
References:  <48AC266D.2030902@eskk.nu>

next in thread | previous in thread | raw e-mail | index | archive | help
Leslie Jensen wrote:
> Hello
>
> I've done some testing with Steve Gibsons "Shields up"
>
> https://www.grc.com/x/ne.dll?bh0bkyd2
>
> These tests lists the ports as closed but visible.
>
> Instead the site suggest that one uses stealth so that the ports are 
> not visible from the Internet.
>
> Is there a way to achieve this with PF?

That's what pf does by default if you don't specify "return", 
"return-rst" or "return-icmp" in your block rules.





Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?48AC2C86.6060306>