On Thu, 2003-02-06 at 06:19, Dries Schellekens wrote: > OpenBSD hosts use random IPids. But PF doesn't rewrite IPids when NATting. > So hosts behind the NAT (running a different OS) will not have randomized > IPids and thus this counting trick will detect these hosts.
It's my understanding that the PF code is, for all practical purposes, frozen for the 3.3 release. Is there any chance of this making it into 3.2 -current or 3.3 -release, or is this destined for 3.3 -current (if at all)? -J.
