summaryrefslogtreecommitdiff
path: root/share/ipf/example.8
diff options
context:
space:
mode:
Diffstat (limited to 'share/ipf/example.8')
-rw-r--r--share/ipf/example.810
1 files changed, 10 insertions, 0 deletions
diff --git a/share/ipf/example.8 b/share/ipf/example.8
new file mode 100644
index 00000000000..69fa4a2d32a
--- /dev/null
+++ b/share/ipf/example.8
@@ -0,0 +1,10 @@
+#
+# block all incoming TCP connections but send back a TCP-RST for ones to
+# the ident port
+#
+block in proto tcp from any to any flags S/SA
+block return-rst in quick proto tcp from any to any flags S/SA
+#
+# block all inbound UDP packets and send back an ICMP error.
+#
+block return-icmp in proto udp from any to any