On Fri, Jan 09, 2004 at 12:41:45PM +0100, Laurent Cheylus wrote:
> 
> I have a problem with PF logs on OpenBSD 3.4-stable version.
> 
> I received a lot of packets from loopback addresse 127.0.0.1 port 80 :
> - - TCP RST packets sent by clients infected by Blaster Worm and use of my 
> personnal aaddress for IP source spoofing !!!
> - - bad configuration from my ISP who routes those packets on Internet, 
> contrary to RFC 1918

[snip] 

> No log for loopback address 127.0.0.1 but my PF rules are :
> 
> > sudo pfctl -sr
[snip]

This information is not complete.
Do you also have nat/rdr rules? Are you running a bridge?

Reply via email to