Annotation of src/etc/pf.conf, Revision 1.55
1.55 ! sthen 1: # $OpenBSD: pf.conf,v 1.54 2014/08/23 05:49:42 deraadt Exp $
1.1 kjell 2: #
1.54 deraadt 3: # See pf.conf(5) and /etc/examples/pf.conf
1.4 henning 4:
1.38 deraadt 5: set skip on lo
1.27 cedric 6:
1.53 dtucker 7: block return # block stateless traffic
1.52 halex 8: pass # establish keep-state
1.27 cedric 9:
1.38 deraadt 10: # By default, do not permit remote connections to X11
1.53 dtucker 11: block return in on ! lo0 proto tcp to port 6000:6010
1.55 ! sthen 12:
! 13: # Port build user does not need network
! 14: block return out log proto {tcp udp} user _pbuild