Skip site navigation (1)Skip section navigation (2)
Date:      Tue, 11 Feb 2014 17:07:21 +0200
From:      "skeletor@lissyara.su" <skeletor@lissyara.su>
To:        freebsd-pf@freebsd.org
Subject:   pf block IP immediately
Message-ID:  <52FA3CA9.30806@lissyara.su>

index | next in thread | raw e-mail

Hello.
I have a FreeBSD 9.2 amd64 with pf (build in kernel).
Can pf block some IP (sessions) immediately? Next rule can block only 
new sessions, but currect open sessions stay open as long as they open by IP

block quick from X.X.X.X to any
block quick from any to X.X.X.X

Also, I can do pfctl -F sessions, but it flushes all sessions of all users.

tcpdrop not shown this sessions, because this is a nat sessions.

Thanks.


home | help

Want to link to this message? Use this
URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?52FA3CA9.30806>