blob: 79170824334a87a51e816c5127dad968df23eaf7 (
plain)
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
70
71
72
73
74
75
76
77
78
79
80
81
82
83
84
85
86
87
88
89
90
91
92
93
94
95
96
97
98
99
100
101
102
103
104
|
@0 block drop out log on tun1000000 all
[ Skip steps: i=end f=6 p=2 sa=6 sp=end da=7 dp=15 ]
[ queue: qname= qid=0 pqname= pqid=0 ]
[ Evaluations: 0 Packets: 0 Bytes: 0 States: 0 ]
@1 block drop in log on tun1000000 all
[ Skip steps: i=end f=6 sa=6 sp=end da=7 dp=15 ]
[ queue: qname= qid=0 pqname= pqid=0 ]
[ Evaluations: 0 Packets: 0 Bytes: 0 States: 0 ]
@2 block return-rst out log on tun1000000 proto tcp all
[ Skip steps: i=end f=6 p=4 sa=6 sp=end da=7 dp=15 ]
[ queue: qname= qid=0 pqname= pqid=0 ]
[ Evaluations: 0 Packets: 0 Bytes: 0 States: 0 ]
@3 block return-rst in log on tun1000000 proto tcp all
[ Skip steps: i=end f=6 sa=6 sp=end da=7 dp=15 ]
[ queue: qname= qid=0 pqname= pqid=0 ]
[ Evaluations: 0 Packets: 0 Bytes: 0 States: 0 ]
@4 block return-icmp(port-unr, port-unr) out log on tun1000000 proto udp all
[ Skip steps: i=end f=6 p=6 sa=6 sp=end da=7 dp=15 ]
[ queue: qname= qid=0 pqname= pqid=0 ]
[ Evaluations: 0 Packets: 0 Bytes: 0 States: 0 ]
@5 block return-icmp(port-unr, port-unr) in log on tun1000000 proto udp all
[ Skip steps: i=end sp=end da=7 dp=15 ]
[ queue: qname= qid=0 pqname= pqid=0 ]
[ Evaluations: 0 Packets: 0 Bytes: 0 States: 0 ]
@6 block drop out log quick on tun1000000 inet from ! 157.161.48.183 to any
[ Skip steps: i=end f=13 p=12 sp=end dp=15 ]
[ queue: qname= qid=0 pqname= pqid=0 ]
[ Evaluations: 0 Packets: 0 Bytes: 0 States: 0 ]
@7 block drop in quick on tun1000000 inet from any to 255.255.255.255
[ Skip steps: i=end d=12 f=13 p=12 sp=end dp=15 ]
[ queue: qname= qid=0 pqname= pqid=0 ]
[ Evaluations: 0 Packets: 0 Bytes: 0 States: 0 ]
@8 block drop in log quick on tun1000000 inet from 10.0.0.0/8 to any
[ Skip steps: i=end d=12 f=13 p=12 sp=end da=end dp=15 ]
[ queue: qname= qid=0 pqname= pqid=0 ]
[ Evaluations: 0 Packets: 0 Bytes: 0 States: 0 ]
@9 block drop in log quick on tun1000000 inet from 172.16.0.0/12 to any
[ Skip steps: i=end d=12 f=13 p=12 sp=end da=end dp=15 ]
[ queue: qname= qid=0 pqname= pqid=0 ]
[ Evaluations: 0 Packets: 0 Bytes: 0 States: 0 ]
@10 block drop in log quick on tun1000000 inet from 192.168.0.0/16 to any
[ Skip steps: i=end d=12 f=13 p=12 sp=end da=end dp=15 ]
[ queue: qname= qid=0 pqname= pqid=0 ]
[ Evaluations: 0 Packets: 0 Bytes: 0 States: 0 ]
@11 block drop in log quick on tun1000000 inet from 255.255.255.255 to any
[ Skip steps: i=end f=13 sp=end da=end dp=15 ]
[ queue: qname= qid=0 pqname= pqid=0 ]
[ Evaluations: 0 Packets: 0 Bytes: 0 States: 0 ]
@12 pass out on tun1000000 inet proto icmp all icmp-type echoreq code 0 keep state
[ Skip steps: i=end d=14 sa=end sp=end da=end dp=15 ]
[ queue: qname= qid=0 pqname= pqid=0 ]
[ Evaluations: 0 Packets: 0 Bytes: 0 States: 0 ]
@13 pass out on tun1000000 proto udp all keep state
[ Skip steps: i=end sa=end sp=end da=end dp=15 ]
[ queue: qname= qid=0 pqname= pqid=0 ]
[ Evaluations: 0 Packets: 0 Bytes: 0 States: 0 ]
@14 pass in on tun1000000 inet proto icmp all icmp-type echoreq code 0 keep state
[ Skip steps: i=end d=16 sa=end sp=end da=end ]
[ queue: qname= qid=0 pqname= pqid=0 ]
[ Evaluations: 0 Packets: 0 Bytes: 0 States: 0 ]
@15 pass in on tun1000000 proto udp from any to any port = domain keep state
[ Skip steps: i=end f=end sa=end sp=end da=end ]
[ queue: qname= qid=0 pqname= pqid=0 ]
[ Evaluations: 0 Packets: 0 Bytes: 0 States: 0 ]
@16 pass out on tun1000000 proto tcp all flags S/SA modulate state
[ Skip steps: i=end f=end p=18 sa=end sp=end da=end dp=22 ]
[ queue: qname= qid=0 pqname= pqid=0 ]
[ Evaluations: 0 Packets: 0 Bytes: 0 States: 0 ]
@17 pass in on tun1000000 proto tcp all flags S/SA modulate state
[ Skip steps: i=end d=end f=end sa=end sp=end da=end dp=22 ]
[ queue: qname= qid=0 pqname= pqid=0 ]
[ Evaluations: 0 Packets: 0 Bytes: 0 States: 0 ]
@18 pass in on tun1000000 proto udp all keep state
[ Skip steps: i=end d=end f=end sa=end sp=end da=end dp=22 ]
[ queue: qname= qid=0 pqname= pqid=0 ]
[ Evaluations: 0 Packets: 0 Bytes: 0 States: 0 ]
@19 pass in on tun1000000 proto icmp all keep state
[ Skip steps: i=end d=end f=end sa=end sp=end da=end dp=22 ]
[ queue: qname= qid=0 pqname= pqid=0 ]
[ Evaluations: 0 Packets: 0 Bytes: 0 States: 0 ]
@20 pass in on tun1000000 proto tcp all flags S/SA synproxy state
[ Skip steps: i=end d=end f=end sa=end sp=end da=end dp=22 ]
[ queue: qname= qid=0 pqname= pqid=0 ]
[ Evaluations: 0 Packets: 0 Bytes: 0 States: 0 ]
@21 pass in on tun1000000 proto icmp all keep state
[ Skip steps: i=end d=end f=end sa=end sp=end da=end ]
[ queue: qname= qid=0 pqname= pqid=0 ]
[ Evaluations: 0 Packets: 0 Bytes: 0 States: 0 ]
@22 pass in on tun1000000 proto tcp from any to any port = ssh flags S/SA modulate state
[ Skip steps: i=end d=end f=end p=end sa=end sp=end da=end ]
[ queue: qname= qid=0 pqname= pqid=0 ]
[ Evaluations: 0 Packets: 0 Bytes: 0 States: 0 ]
@23 pass in on tun1000000 proto tcp from any to any port = smtp flags S/SA modulate state
[ Skip steps: i=end d=end f=end p=end sa=end sp=end da=end ]
[ queue: qname= qid=0 pqname= pqid=0 ]
[ Evaluations: 0 Packets: 0 Bytes: 0 States: 0 ]
@24 pass in on tun1000000 proto tcp from any to any port = domain flags S/SA modulate state
[ Skip steps: i=end d=end f=end p=end sa=end sp=end da=end ]
[ queue: qname= qid=0 pqname= pqid=0 ]
[ Evaluations: 0 Packets: 0 Bytes: 0 States: 0 ]
@25 pass in on tun1000000 proto tcp from any to any port = auth flags S/SA modulate state
[ Skip steps: i=end d=end f=end p=end sa=end sp=end da=end dp=end ]
[ queue: qname= qid=0 pqname= pqid=0 ]
[ Evaluations: 0 Packets: 0 Bytes: 0 States: 0 ]
|