blob: 503ef536096ca5f0397d64867a4eb10f8bc001aa (
plain)
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
|
@0 block out log on tun0 all
@1 block in log on tun0 all
@2 block return-rst out log on tun0 proto tcp all
@3 block return-rst in log on tun0 proto tcp all
@4 block return-icmp out log on tun0 proto udp all
@5 block return-icmp in log on tun0 proto udp all
@6 block out log quick on tun0 inet from ! 157.161.48.183 to any
@7 block in quick on tun0 inet from any to 255.255.255.255
@8 block in log quick on tun0 inet from 10.0.0.0/8 to any
@9 block in log quick on tun0 inet from 172.16.0.0/12 to any
@10 block in log quick on tun0 inet from 192.168.0.0/16 to any
@11 block in log quick on tun0 inet from 255.255.255.255 to any
@12 block in log quick from no-route to any
@13 pass out on tun0 inet proto icmp all icmp-type echoreq code 0 keep state
@14 pass in on tun0 inet proto icmp all icmp-type echoreq code 0 keep state
@15 pass out on tun0 proto udp all keep state
@16 pass in on tun0 proto udp from any to any port = domain keep state
@17 pass out on tun0 proto tcp all keep state
@18 pass in on tun0 proto tcp from any to any port = ssh keep state
@19 pass in on tun0 proto tcp from any to any port = smtp keep state
@20 pass in on tun0 proto tcp from any to any port = domain keep state
@21 pass in on tun0 proto tcp from any to any port = auth keep state
|