xref: /freebsd-src/share/examples/ipfilter/rules/example.9 (revision 41edb306f05651fcaf6c74f9e3557f59f80292e1)
1#
2# drop all packets without IP security options
3#
4block in all
5pass in all with opt sec
6#
7# only allow packets in and out on le1 which are top secret
8#
9block out on le1 all
10pass out on le1 all with opt sec-class topsecret
11block in on le1 all
12pass in on le1 all with opt sec-class topsecret
13