CVSROOT: /cvs Module name: src Changes by: [email protected] 2009/06/10 09:29:34
Modified files:
etc : pf.conf
Log message:
pf should block the port range allocated by net.inet.tcp.baddynamic
for the X protocol instead of port 6000 only; this way pf provides
the same protection level to all X servers.
ok sthen@; "I am convinced that 6000-6010 is acceptable for blocking
in pf" deraadt@, "i'd thought of something similar" oga@
