xref: /netbsd-src/external/bsd/ipf/dist/rules/example.13 (revision bc4097aacfdd9307c19b7947c13c6ad6982527a9)
1*bc4097aaSchristos#	$NetBSD: example.13,v 1.1.1.1 2012/03/23 21:20:15 christos Exp $
2*bc4097aaSchristos#
3*bc4097aaSchristos# Log all short TCP packets to qe3, with 10.3.3.3 as the intended
4*bc4097aaSchristos# destination for the packet.
5*bc4097aaSchristos#
6*bc4097aaSchristosblock in on qe0 to qe3:10.3.3.3 proto tcp all with short
7*bc4097aaSchristos#
8*bc4097aaSchristos# Log all connection attempts for TCP
9*bc4097aaSchristos#
10*bc4097aaSchristospass in on le0 dup-to le1:10.3.3.3 proto tcp all flags S/SA
11*bc4097aaSchristos#
12*bc4097aaSchristos# Route all UDP packets through transparently.
13*bc4097aaSchristos#
14*bc4097aaSchristospass in on ppp0 fastroute proto udp all
15*bc4097aaSchristos#
16*bc4097aaSchristos# Route all ICMP packets to network 10 out through le1, to 10.3.3.1
17*bc4097aaSchristos#
18*bc4097aaSchristospass in on le0 to le1:10.3.3.1 proto icmp all
19