[FUG-BR] [OT] PF FLAGS e etc

Breno BF breno em lagosnet.com.br
Quinta Março 20 16:52:22 BRT 2008


----- Original Message ----- 
From: "mantunes" <mantunes.listas em gmail.com>
To: "Lista Brasileira de Discussão sobre FreeBSD (FUG-BR)" 
<freebsd em fug.com.br>
Sent: Thursday, March 20, 2008 4:35 PM
Subject: Re: [FUG-BR] [OT] PF FLAGS e etc


>Até no livro "the book of pf" que tenho aqui.. não encontrei algum 
>referência
>

Achei isto, no google:
http://www.openbsd.org/faq/pf/filter.html

Trecho:
    "Specifies whether state information is kept on packets matching this 
rule.

* keep state - works with TCP, UDP, and ICMP. In OpenBSD 4.1 and later, this 
option is the default for all filter rules.
* modulate state - works only with TCP. PF will generate strong Initial 
Sequence Numbers (ISNs) for packets matching this rule.
* synproxy state - proxies incoming TCP connections to help protect servers 
from spoofed TCP SYN floods. This option includes the functionality of keep 
state and modulate state. "


Tb achei isto aqui:
http://www.onlamp.com/pub/a/bsd/2003/06/26/ssn_openbsd.html?page=last

 :)

Sds,
Breno BF



Mais detalhes sobre a lista de discussão freebsd