On 2013-10-29, OCEANET - Cédric BASSAGET <[email protected]> wrote: > Hi, > Simple and general question : > Is it a good thing to run PF on an openbgpd server (for security > reasons), or should I de-activate PF ?
I use it, partly to mitigate ssh brute-force, partly so I can easily enable pflow if I want to get stats, and partly so I can block crap at the borders without having to send it over wan links.

