Re: log reason when a packet causes pf to add an IP to a table ?

2021-06-28 Thread Klemens Nanni
On Mon, Jun 28, 2021 at 06:38:21PM +0200, Matthieu Herrb wrote: > I have rules like this one on the firewalls I manage: > > pass in on $in_if proto tcp from any to port ssh \ > flags S/SA keep state \ > (source-track rule, max-src-states 30, max-src-conn 20, \ >

log reason when a packet causes pf to add an IP to a table ?

2021-06-28 Thread Matthieu Herrb
Hi I have rules like this one on the firewalls I manage: pass in on $in_if proto tcp from any to port ssh \ flags S/SA keep state \ (source-track rule, max-src-states 30, max-src-conn 20, \ max-src-conn-rate 15/30, overload flush global) block log from