cvs2git | 5540113 | 2006-06-15 16:38:29 +0000 | [diff] [blame] | 1 | # |
2 | # block all incoming TCP connections but send back a TCP-RST for ones to | ||||
3 | # the ident port | ||||
4 | # | ||||
5 | block in proto tcp from any to any flags S/SA | ||||
6 | block return-rst in quick proto tcp from any to any port = 113 flags S/SA | ||||
7 | # | ||||
8 | # block all inbound UDP packets and send back an ICMP error. | ||||
9 | # | ||||
10 | block return-icmp in proto udp from any to any |