Skip site navigation (1)Skip section navigation (2)
Date:      Fri, 16 Jan 2009 13:21:15 -0800
From:      Chuck Swiger <cswiger@mac.com>
To:        Eugene Perevyazko <john@dnepro.net>
Cc:        freebsd-net@freebsd.org
Subject:   Re: TARPIT for pf/ipfw
Message-ID:  <06EC1210-8D3E-4F47-A1DE-F0AE038929D9@mac.com>
In-Reply-To: <20090116115026.GA98057@roof1.dnepro.net>
References:  <E1LNksH-000M7S-00.need4spam-bk-ru@f253.mail.ru> <20090116115026.GA98057@roof1.dnepro.net>

next in thread | previous in thread | raw e-mail | index | archive | help
On Jan 16, 2009, at 3:50 AM, Eugene Perevyazko wrote:
> On Fri, Jan 16, 2009 at 12:20:21PM +0300, Alexey Ivanov wrote:
>> Is there any command identical to:
>>        iptables -A INPUT -p tcp -m tcp -dport 80 -j TARPIT
>>
>> If no, does anyone ever tried to implement this feature?
>
> I'm thinking on implementing it in ipfw but it'll be a week or two  
> later,
> when I will have some free time.

Note that net/honeyd and security/labrea offer somewhat similar  
functionality.

-- 
-Chuck




Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?06EC1210-8D3E-4F47-A1DE-F0AE038929D9>