LeiV <ventas_en_e...@terra.es> writes:

> I have a openbsd pf firewall protecting a web server, I have noticed that
> some pages gives me errors when browsing through my site (sometimes it works
> sometimes not), then I looked at pf and saw that is blocking a lot of
> connectyions, how do I know which connections is blocking?

The statistics don't really show us much of anything by themselves.

What are the actual error messages?  What does your rule set say?  Do
you have meaningful log data (pflog or otherwise)?  That's the kind of
information we would need to help you debug, diagnose and fix.

One random thought - does your rule set include such things as limits
on max number of connections?  Pure speculation, of course, but it is
one of many situations would fit the symptoms you describe.

- Peter
Peter N. M. Hansteen, member of the first RFC 1149 implementation team
http://bsdly.blogspot.com/ http://www.bsdly.net/ http://www.nuug.no/
"Remember to set the evil bit on all malicious network traffic"
delilah spamd[29949]: disconnected after 42673 seconds.

