New additions to the Firewall Builder Cookbook reproduce rules found in the excellent book "The Book of PF" (http://nostarch.com/pf.htm). I chose rules from the chapter 6 "Turning the Tables for Proactive Defense" because they illustrate usage of dynamic tables, a very powerful mechanism that allows one to build firewall policy to match large numbers of ip addresses that may change all the time, without reloading firewall policy. This is very easy to do in Firewall Builder with run-time Address Table objects.
New chapters in the Firewall Builder Cookbook:
Rules for PF and spamd
Rules to block brute force attacks with PF
Saturday, November 22, 2008
Subscribe to:
Post Comments (Atom)
0 comments:
Post a Comment