ipf return-rst

From: Eric Anderson (anderson@centtech.com)
Date: 11/28/01


Date: Wed, 28 Nov 2001 16:47:34 -0600
From: Eric Anderson <anderson@centtech.com>
To: freebsd-security@freebsd.org

I'm trying to figure out why my return-rst lines aren't
working. Here's a sample of a line:
block return-rst in quick on xl0 proto tcp from any to
my.ext.ip/32 port = 23 flags S/SA
and I've tried:
block return-rst in quick on xl0 proto tcp from any to
my.ext.ip/32 port = 23 flags

Both block the connection, but timeout instead of giving the
"Connection refused" line.

What am I missing?

Thanks!
Eric

-- 
-------------------------------------------------------------
Eric Anderson	 anderson@centtech.com    Centaur Technology
An unbreakable toy is useful for breaking other toys.
-------------------------------------------------------------
To Unsubscribe: send mail to majordomo@FreeBSD.org
with "unsubscribe freebsd-security" in the body of the message