why are pf-blocked ips 'leaking' thru to spamd?

snowcrash schneecrash+pf at gmail.com
Fri Apr 27 18:47:24 UTC 2007


i suppose alternative would be to,

  --- set require-order yes
  +++ set require-order no

and put some

  block quick <ip-black>

BEFORE those rdr's  ... to prevent those addresses in <ip-black> from
ever seeing the redirection in the first place (which is probably
better anyway).

BUT, i've heard tell that disabling require-order can have its own set
of 'surprises' ...


More information about the freebsd-pf mailing list