summaryrefslogtreecommitdiff
path: root/regress/sbin/pfctl/pf7.optimized
blob: 2ad6782b24e01c201fe4845253f668d698ce68e9 (plain)
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
70
71
72
73
74
75
76
77
78
79
80
81
82
83
84
85
86
87
88
89
90
91
92
93
94
95
96
97
98
99
100
101
102
103
104
@0 block drop out log on tun1000000 all
  [ Skip steps: i=end f=6 p=2 sa=6 sp=end da=7 dp=15 ]
  [ queue: qname= qid=0 pqname= pqid=0 ]
  [ Evaluations: 0         Packets: 0         Bytes: 0           States: 0     ]
@1 block drop in log on tun1000000 all
  [ Skip steps: i=end f=6 sa=6 sp=end da=7 dp=15 ]
  [ queue: qname= qid=0 pqname= pqid=0 ]
  [ Evaluations: 0         Packets: 0         Bytes: 0           States: 0     ]
@2 block return-rst out log on tun1000000 proto tcp all
  [ Skip steps: i=end f=6 p=4 sa=6 sp=end da=7 dp=15 ]
  [ queue: qname= qid=0 pqname= pqid=0 ]
  [ Evaluations: 0         Packets: 0         Bytes: 0           States: 0     ]
@3 block return-rst in log on tun1000000 proto tcp all
  [ Skip steps: i=end f=6 sa=6 sp=end da=7 dp=15 ]
  [ queue: qname= qid=0 pqname= pqid=0 ]
  [ Evaluations: 0         Packets: 0         Bytes: 0           States: 0     ]
@4 block return-icmp(port-unr, port-unr) out log on tun1000000 proto udp all
  [ Skip steps: i=end f=6 p=6 sa=6 sp=end da=7 dp=15 ]
  [ queue: qname= qid=0 pqname= pqid=0 ]
  [ Evaluations: 0         Packets: 0         Bytes: 0           States: 0     ]
@5 block return-icmp(port-unr, port-unr) in log on tun1000000 proto udp all
  [ Skip steps: i=end sp=end da=7 dp=15 ]
  [ queue: qname= qid=0 pqname= pqid=0 ]
  [ Evaluations: 0         Packets: 0         Bytes: 0           States: 0     ]
@6 block drop out log quick on tun1000000 inet from ! 157.161.48.183 to any
  [ Skip steps: i=end f=13 p=12 sp=end dp=15 ]
  [ queue: qname= qid=0 pqname= pqid=0 ]
  [ Evaluations: 0         Packets: 0         Bytes: 0           States: 0     ]
@7 block drop in quick on tun1000000 inet from any to 255.255.255.255
  [ Skip steps: i=end d=12 f=13 p=12 sp=end dp=15 ]
  [ queue: qname= qid=0 pqname= pqid=0 ]
  [ Evaluations: 0         Packets: 0         Bytes: 0           States: 0     ]
@8 block drop in log quick on tun1000000 inet from 10.0.0.0/8 to any
  [ Skip steps: i=end d=12 f=13 p=12 sp=end da=end dp=15 ]
  [ queue: qname= qid=0 pqname= pqid=0 ]
  [ Evaluations: 0         Packets: 0         Bytes: 0           States: 0     ]
@9 block drop in log quick on tun1000000 inet from 172.16.0.0/12 to any
  [ Skip steps: i=end d=12 f=13 p=12 sp=end da=end dp=15 ]
  [ queue: qname= qid=0 pqname= pqid=0 ]
  [ Evaluations: 0         Packets: 0         Bytes: 0           States: 0     ]
@10 block drop in log quick on tun1000000 inet from 192.168.0.0/16 to any
  [ Skip steps: i=end d=12 f=13 p=12 sp=end da=end dp=15 ]
  [ queue: qname= qid=0 pqname= pqid=0 ]
  [ Evaluations: 0         Packets: 0         Bytes: 0           States: 0     ]
@11 block drop in log quick on tun1000000 inet from 255.255.255.255 to any
  [ Skip steps: i=end f=13 sp=end da=end dp=15 ]
  [ queue: qname= qid=0 pqname= pqid=0 ]
  [ Evaluations: 0         Packets: 0         Bytes: 0           States: 0     ]
@12 pass out on tun1000000 inet proto icmp all icmp-type echoreq code 0 keep state
  [ Skip steps: i=end d=14 sa=end sp=end da=end dp=15 ]
  [ queue: qname= qid=0 pqname= pqid=0 ]
  [ Evaluations: 0         Packets: 0         Bytes: 0           States: 0     ]
@13 pass out on tun1000000 proto udp all keep state
  [ Skip steps: i=end sa=end sp=end da=end dp=15 ]
  [ queue: qname= qid=0 pqname= pqid=0 ]
  [ Evaluations: 0         Packets: 0         Bytes: 0           States: 0     ]
@14 pass in on tun1000000 inet proto icmp all icmp-type echoreq code 0 keep state
  [ Skip steps: i=end d=16 sa=end sp=end da=end ]
  [ queue: qname= qid=0 pqname= pqid=0 ]
  [ Evaluations: 0         Packets: 0         Bytes: 0           States: 0     ]
@15 pass in on tun1000000 proto udp from any to any port = domain keep state
  [ Skip steps: i=end f=end sa=end sp=end da=end ]
  [ queue: qname= qid=0 pqname= pqid=0 ]
  [ Evaluations: 0         Packets: 0         Bytes: 0           States: 0     ]
@16 pass out on tun1000000 proto tcp all modulate state
  [ Skip steps: i=end f=end p=18 sa=end sp=end da=end dp=22 ]
  [ queue: qname= qid=0 pqname= pqid=0 ]
  [ Evaluations: 0         Packets: 0         Bytes: 0           States: 0     ]
@17 pass in on tun1000000 proto tcp all modulate state
  [ Skip steps: i=end d=end f=end sa=end sp=end da=end dp=22 ]
  [ queue: qname= qid=0 pqname= pqid=0 ]
  [ Evaluations: 0         Packets: 0         Bytes: 0           States: 0     ]
@18 pass in on tun1000000 proto udp all keep state
  [ Skip steps: i=end d=end f=end sa=end sp=end da=end dp=22 ]
  [ queue: qname= qid=0 pqname= pqid=0 ]
  [ Evaluations: 0         Packets: 0         Bytes: 0           States: 0     ]
@19 pass in on tun1000000 proto icmp all keep state
  [ Skip steps: i=end d=end f=end sa=end sp=end da=end dp=22 ]
  [ queue: qname= qid=0 pqname= pqid=0 ]
  [ Evaluations: 0         Packets: 0         Bytes: 0           States: 0     ]
@20 pass in on tun1000000 proto tcp all flags S/SA synproxy state
  [ Skip steps: i=end d=end f=end sa=end sp=end da=end dp=22 ]
  [ queue: qname= qid=0 pqname= pqid=0 ]
  [ Evaluations: 0         Packets: 0         Bytes: 0           States: 0     ]
@21 pass in on tun1000000 proto icmp all keep state
  [ Skip steps: i=end d=end f=end sa=end sp=end da=end ]
  [ queue: qname= qid=0 pqname= pqid=0 ]
  [ Evaluations: 0         Packets: 0         Bytes: 0           States: 0     ]
@22 pass in on tun1000000 proto tcp from any to any port = ssh modulate state
  [ Skip steps: i=end d=end f=end p=end sa=end sp=end da=end ]
  [ queue: qname= qid=0 pqname= pqid=0 ]
  [ Evaluations: 0         Packets: 0         Bytes: 0           States: 0     ]
@23 pass in on tun1000000 proto tcp from any to any port = smtp modulate state
  [ Skip steps: i=end d=end f=end p=end sa=end sp=end da=end ]
  [ queue: qname= qid=0 pqname= pqid=0 ]
  [ Evaluations: 0         Packets: 0         Bytes: 0           States: 0     ]
@24 pass in on tun1000000 proto tcp from any to any port = domain modulate state
  [ Skip steps: i=end d=end f=end p=end sa=end sp=end da=end ]
  [ queue: qname= qid=0 pqname= pqid=0 ]
  [ Evaluations: 0         Packets: 0         Bytes: 0           States: 0     ]
@25 pass in on tun1000000 proto tcp from any to any port = auth modulate state
  [ Skip steps: i=end d=end f=end p=end sa=end sp=end da=end dp=end ]
  [ queue: qname= qid=0 pqname= pqid=0 ]
  [ Evaluations: 0         Packets: 0         Bytes: 0           States: 0     ]