On Fri, Jan 09, 2004 at 12:41:45PM +0100, Laurent Cheylus wrote: > > I have a problem with PF logs on OpenBSD 3.4-stable version. > > I received a lot of packets from loopback addresse 127.0.0.1 port 80 : > - - TCP RST packets sent by clients infected by Blaster Worm and use of my > personnal aaddress for IP source spoofing !!! > - - bad configuration from my ISP who routes those packets on Internet, > contrary to RFC 1918
[snip] > No log for loopback address 127.0.0.1 but my PF rules are : > > > sudo pfctl -sr [snip] This information is not complete. Do you also have nat/rdr rules? Are you running a bridge?
