[FUG-BR] [OT] PF FLAGS e etc
Breno BF
breno em lagosnet.com.br
Quinta Março 20 16:52:22 BRT 2008
----- Original Message -----
From: "mantunes" <mantunes.listas em gmail.com>
To: "Lista Brasileira de Discussão sobre FreeBSD (FUG-BR)"
<freebsd em fug.com.br>
Sent: Thursday, March 20, 2008 4:35 PM
Subject: Re: [FUG-BR] [OT] PF FLAGS e etc
>Até no livro "the book of pf" que tenho aqui.. não encontrei algum
>referência
>
Achei isto, no google:
http://www.openbsd.org/faq/pf/filter.html
Trecho:
"Specifies whether state information is kept on packets matching this
rule.
* keep state - works with TCP, UDP, and ICMP. In OpenBSD 4.1 and later, this
option is the default for all filter rules.
* modulate state - works only with TCP. PF will generate strong Initial
Sequence Numbers (ISNs) for packets matching this rule.
* synproxy state - proxies incoming TCP connections to help protect servers
from spoofed TCP SYN floods. This option includes the functionality of keep
state and modulate state. "
Tb achei isto aqui:
http://www.onlamp.com/pub/a/bsd/2003/06/26/ssn_openbsd.html?page=last
:)
Sds,
Breno BF
Mais detalhes sobre a lista de discussão freebsd