blob: 1742eb3715a27a96fa345a2d24404fcc6563c337 (
plain)
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
70
71
72
73
74
75
76
77
78
79
80
81
82
83
84
85
86
87
88
|
@0 block drop out log on tun1000000 all
[ Skip steps: i=12 f=6 p=2 sa=6 sp=end da=7 dp=13 ]
[ queue: qname= qid=0 pqname= pqid=0 ]
[ Evaluations: 0 Packets: 0 Bytes: 0 States: 0 ]
@1 block drop in log on tun1000000 all
[ Skip steps: i=12 f=6 sa=6 sp=end da=7 dp=13 ]
[ queue: qname= qid=0 pqname= pqid=0 ]
[ Evaluations: 0 Packets: 0 Bytes: 0 States: 0 ]
@2 block return-rst out log on tun1000000 proto tcp all
[ Skip steps: i=12 f=6 p=4 sa=6 sp=end da=7 dp=13 ]
[ queue: qname= qid=0 pqname= pqid=0 ]
[ Evaluations: 0 Packets: 0 Bytes: 0 States: 0 ]
@3 block return-rst in log on tun1000000 proto tcp all
[ Skip steps: i=12 f=6 sa=6 sp=end da=7 dp=13 ]
[ queue: qname= qid=0 pqname= pqid=0 ]
[ Evaluations: 0 Packets: 0 Bytes: 0 States: 0 ]
@4 block return-icmp(port-unr, port-unr) out log on tun1000000 proto udp all
[ Skip steps: i=12 f=6 p=6 sa=6 sp=end da=7 dp=13 ]
[ queue: qname= qid=0 pqname= pqid=0 ]
[ Evaluations: 0 Packets: 0 Bytes: 0 States: 0 ]
@5 block return-icmp(port-unr, port-unr) in log on tun1000000 proto udp all
[ Skip steps: i=12 sp=end da=7 dp=13 ]
[ queue: qname= qid=0 pqname= pqid=0 ]
[ Evaluations: 0 Packets: 0 Bytes: 0 States: 0 ]
@6 block drop out log quick on tun1000000 inet from ! 157.161.48.183 to any
[ Skip steps: i=12 f=12 p=13 sp=end dp=13 ]
[ queue: qname= qid=0 pqname= pqid=0 ]
[ Evaluations: 0 Packets: 0 Bytes: 0 States: 0 ]
@7 block drop in quick on tun1000000 inet from any to 255.255.255.255
[ Skip steps: i=12 d=19 f=12 p=13 sp=end dp=13 ]
[ queue: qname= qid=0 pqname= pqid=0 ]
[ Evaluations: 0 Packets: 0 Bytes: 0 States: 0 ]
@8 block drop in log quick on tun1000000 inet from 10.0.0.0/8 to any
[ Skip steps: i=12 d=19 f=12 p=13 sp=end da=end dp=13 ]
[ queue: qname= qid=0 pqname= pqid=0 ]
[ Evaluations: 0 Packets: 0 Bytes: 0 States: 0 ]
@9 block drop in log quick on tun1000000 inet from 172.16.0.0/12 to any
[ Skip steps: i=12 d=19 f=12 p=13 sp=end da=end dp=13 ]
[ queue: qname= qid=0 pqname= pqid=0 ]
[ Evaluations: 0 Packets: 0 Bytes: 0 States: 0 ]
@10 block drop in log quick on tun1000000 inet from 192.168.0.0/16 to any
[ Skip steps: i=12 d=19 f=12 p=13 sp=end da=end dp=13 ]
[ queue: qname= qid=0 pqname= pqid=0 ]
[ Evaluations: 0 Packets: 0 Bytes: 0 States: 0 ]
@11 block drop in log quick on tun1000000 inet from 255.255.255.255 to any
[ Skip steps: d=19 p=13 sp=end da=end dp=13 ]
[ queue: qname= qid=0 pqname= pqid=0 ]
[ Evaluations: 0 Packets: 0 Bytes: 0 States: 0 ]
@12 block drop in log quick from no-route to any
[ Skip steps: d=19 f=17 sp=end da=end ]
[ queue: qname= qid=0 pqname= pqid=0 ]
[ Evaluations: 0 Packets: 0 Bytes: 0 States: 0 ]
@13 pass in on tun1000000 proto tcp from any to any port = ssh flags S/SA keep state
[ Skip steps: i=end d=19 f=17 p=17 sa=end sp=end da=end ]
[ queue: qname= qid=0 pqname= pqid=0 ]
[ Evaluations: 0 Packets: 0 Bytes: 0 States: 0 ]
@14 pass in on tun1000000 proto tcp from any to any port = smtp flags S/SA keep state
[ Skip steps: i=end d=19 f=17 p=17 sa=end sp=end da=end ]
[ queue: qname= qid=0 pqname= pqid=0 ]
[ Evaluations: 0 Packets: 0 Bytes: 0 States: 0 ]
@15 pass in on tun1000000 proto tcp from any to any port = domain flags S/SA keep state
[ Skip steps: i=end d=19 f=17 p=17 sa=end sp=end da=end ]
[ queue: qname= qid=0 pqname= pqid=0 ]
[ Evaluations: 0 Packets: 0 Bytes: 0 States: 0 ]
@16 pass in on tun1000000 proto tcp from any to any port = auth flags S/SA keep state
[ Skip steps: i=end d=19 sa=end sp=end da=end ]
[ queue: qname= qid=0 pqname= pqid=0 ]
[ Evaluations: 0 Packets: 0 Bytes: 0 States: 0 ]
@17 pass in on tun1000000 inet proto icmp all icmp-type echoreq code 0 keep state
[ Skip steps: i=end d=19 sa=end sp=end da=end ]
[ queue: qname= qid=0 pqname= pqid=0 ]
[ Evaluations: 0 Packets: 0 Bytes: 0 States: 0 ]
@18 pass in on tun1000000 proto udp from any to any port = domain keep state
[ Skip steps: i=end sa=end sp=end da=end ]
[ queue: qname= qid=0 pqname= pqid=0 ]
[ Evaluations: 0 Packets: 0 Bytes: 0 States: 0 ]
@19 pass out on tun1000000 inet proto icmp all icmp-type echoreq code 0 keep state
[ Skip steps: i=end d=end sa=end sp=end da=end dp=end ]
[ queue: qname= qid=0 pqname= pqid=0 ]
[ Evaluations: 0 Packets: 0 Bytes: 0 States: 0 ]
@20 pass out on tun1000000 proto udp all keep state
[ Skip steps: i=end d=end f=end sa=end sp=end da=end dp=end ]
[ queue: qname= qid=0 pqname= pqid=0 ]
[ Evaluations: 0 Packets: 0 Bytes: 0 States: 0 ]
@21 pass out on tun1000000 proto tcp all flags S/SA keep state
[ Skip steps: i=end d=end f=end p=end sa=end sp=end da=end dp=end ]
[ queue: qname= qid=0 pqname= pqid=0 ]
[ Evaluations: 0 Packets: 0 Bytes: 0 States: 0 ]
|