On Sun, 30 Apr 2017 00:29:01 +1000 <[email protected]> wrote: ... > Even with "block reset all" in PF rules, nc does this. > > It would be nice if the "reset" keyword tells the kernel to return > EACCES when bind(2) is called on a port blocked by PF rules for a > particular user. Mistake pointed out to me off-list.
s/reset/return/ I did have "return" in the ruleset, not "reset". Loaded no problem, and same result. I just typed it while fatigued.

