why are pf-blocked ips 'leaking' thru to spamd?

Jon Simola jsimola at gmail.com
Fri Apr 27 20:12:08 UTC 2007


On 4/27/07, snowcrash <schneecrash+pf at gmail.com> wrote:

>    no rdr pass from <ip-black> to any

# echo "no rdr pass from <ip-black> to any" | pfctl -vvnf-
stdin:1: "pass" not valid with "no"

Maybe you want to tag those packets and block them later:

no rdr on em2 proto tcp from { <spamd>, !<ip-black> } to em2 port smtp
tag BLOCKME
...
block quick tagged BLOCKME


-- 
Jon


More information about the freebsd-pf mailing list