diff options
Diffstat (limited to 'contrib/ipfilter/rules/example.6')
-rw-r--r-- | contrib/ipfilter/rules/example.6 | 5 |
1 files changed, 5 insertions, 0 deletions
diff --git a/contrib/ipfilter/rules/example.6 b/contrib/ipfilter/rules/example.6 new file mode 100644 index 0000000..d40f0f3 --- /dev/null +++ b/contrib/ipfilter/rules/example.6 @@ -0,0 +1,5 @@ +# +# block all TCP packets with only the SYN flag set (this is the first +# packet sent to establish a connection) out of the SYN-ACK pair. +# +block in proto tcp from any to any flags S/SA |