Hi all,

I have a OpenBSD 3.9 machine acting as a firewall. It has two network
interface cards, one connected to my local network and the other one
connected to Internet. My default policy is blocking all traffic using

block all

I don't want anyone from my local network to connect to MSN and P2P
programs, so I haven't created any rule to permit those kind of
packet traffic. But I'm facing a lot of problems due to this, because
I have to specify packets that should pass through my internal and external
interfaces. I'd like any ideas or tips from PF gurus about how to
improve my firewall policies. I have an idea: allow everything at my
internal NIC and block all at my external NIC, so all I had to do was
specifying allowed incoming and outcomming traffics only at my external
NIC. But I'll be waiting for (better) proposals.

By now thanks for the time spent reading with this e-mail.

--
Joco Salvatti
Undergraduating in Computer Science
Federal University of Para - UFPA
web: http://www.openbsd-pa.org
e-mail: [EMAIL PROTECTED]

Reply via email to