On 29/02/2004, Ed White <[EMAIL PROTECTED]> wrote To [EMAIL PROTECTED]:
> Until the state created by the above rule is in the table, PF will behave like 
> if the following rule had been added.
> 
> pass in inet proto tcp from $server to $user

this is like 'related' in iptables, tho those ppl try to do
a "smart" approximation about that is "related" to certain
protocols.

I dont like that. Doesnt buy you a real thing - only holes.

Start thinking of bad guys "behind" your firewall, instead
of featurisms for 'only good users' "behind" it.

Short: i dont like it

ciao
-- 
pb@

Reply via email to