/freebsd/contrib/netbsd-tests/ipf/regress/ |
H A D | f5 | 1 block in proto tcp from any port = 23 to any 2 block in proto udp from any port = 23 to any 3 block in proto tcp/udp from any port = 23 to any 4 pass in proto tcp from any port <= 1023 to any 5 pass in proto udp from any port <= 1023 to any 6 pass in proto tcp/udp from any port <= 1023 to any 7 block in proto tcp from any port >= 1024 to any 8 block in proto udp from any port >= 1024 to any 9 block in proto tcp/udp from any port >= 1024 to any 10 pass in proto tcp from any port >= 1024 to any [all …]
|
H A D | f6 | 1 block in proto tcp from any to any port = 23 2 block in proto udp from any to any port = 23 3 block in proto tcp/udp from any to any port = 23 4 pass in proto tcp from any to any port <= 1023 5 pass in proto udp from any to any port <= 1023 6 pass in proto tcp/udp from any to any port <= 1023 7 block in proto tcp from any to any port >= 1024 8 block in proto udp from any to any port >= 1024 9 block in proto tcp/udp from any to any port >= 1024 10 pass in proto tcp from any to any port >= 1024 [all …]
|
H A D | f9 | 1 block in from any to any with ipopts 2 pass in from any to any with opt sec-class topsecret 3 block in from any to any with opt ssrr,sec-class topsecret 4 pass in from any to any with opt ssrr,sec-class topsecret 5 block in from any to any with opt ts,sec-class topsecret 6 pass in from any to any with opt ts,sec-class topsecret 7 block in from any to any with opt sec-class secret 8 pass in from any to any with opt sec-class secret 9 block in from any to any with opt lsrr,ssrr 10 pass in from any to any with opt lsrr,ssrr [all …]
|
H A D | f10 | 1 block in from any to any with not ipopts 2 pass in from any to any with not opt sec-class topsecret 3 block in from any to any with not opt ssrr,sec-class topsecret 4 pass in from any to any with not opt ssrr,sec-class topsecret 5 block in from any to any with not opt ts,sec-class topsecret 6 pass in from any to any with not opt ts,sec-class topsecret 7 block in from any to any with not opt sec-class secret 8 pass in from any to any with not opt sec-class secret 9 block in from any to any with not opt lsrr,ssrr 10 pass in from any to any with not opt lsrr,ssrr [all …]
|
H A D | i7 | 2 block in on lo0 proto tcp from any to any flags A 3 pass in on lo0 proto tcp from any to any flags /SAP 4 block in on lo0 proto tcp from any to any flags 0x80/A 5 pass in on lo0 proto tcp from any to any flags S/18 6 block in on lo0 proto tcp from any to any flags 2/18 7 pass in on lo0 proto tcp from any to any flags 2 8 block in on lo0 proto tcp from any to any flags /16 9 pass in on lo0 proto tcp from any to any flags 2/SA 10 pass in on lo0 proto tcp from any to any flags S/18 11 block in on lo0 proto tcp from any to any flags 2/18 [all …]
|
H A D | i1 | 6 count in from any to any 7 pass in from !any to any pps 10 8 block in from any to !any 11 block in log first on lo0 from any to any 12 pass in log body or-block quick from any to any 13 block return-rst in quick on le0 proto tcp from any to any 14 block return-icmp in on qe0 from any to any 15 block return-icmp(1) in on qe0 from any to any 16 block return-icmp-as-dest in on le0 from any to any 17 block return-icmp-as-dest(port-unr) in on qe0 from any to any
|
H A D | f13 | 1 pass in proto tcp from any to any port = 25 flags S/SA keep frags 2 block in proto tcp from any to any port = 25 flags S/SA keep frags 3 pass in proto udp from any to any port = 53 keep frags 4 block in proto udp from any to any port = 53 keep frags 5 pass in proto tcp from any to any port = 25 flags S/SA keep state keep frags 6 block in proto tcp from any to any port = 25 flags S/SA keep state keep frags 7 pass in proto udp from any to any port = 53 keep frags(strict) 8 pass in proto tcp from any to any port = 25 keep state(strict) 9 pass in proto tcp from any to any port = 25 keep state(loose)
|
/freebsd/contrib/netbsd-tests/ipf/expected/ |
H A D | i8 | 2 block in inet proto icmp from any to any icmp-type unreach code 1 3 pass in inet proto icmp from any to any icmp-type unreach code 15 4 pass in inet proto icmp from any to any icmp-type unreach code 13 5 pass in inet proto icmp from any to any icmp-type unreach code 8 6 pass in inet proto icmp from any to any icmp-type unreach code 4 7 pass in inet proto icmp from any to any icmp-type unreach code 9 8 pass in inet proto icmp from any to any icmp-type unreach code 11 9 pass in inet proto icmp from any to any icmp-type unreach code 14 10 pass in inet proto icmp from any to any icmp-type unreach code 10 11 pass in inet proto icmp from any to any icmp-type unreach code 12 [all …]
|
H A D | i21 | 1 pass in from any port = 10101 to any 2 pass out from any to any port != 22 3 block in from any port 20:21 to any 4 block out from any to any port 10 <> 100 5 pass out from any to any port = 3 6 pass out from any to any port = 5 7 pass out from any to any port = 7 8 pass out from any to any port = 9 9 block in from any port = 20 to any 10 block in from any port = 25 to any [all …]
|
H A D | i19.dist | 1 block in log level user.debug quick proto icmp from any to any 2 block in log level mail.info quick proto icmp from any to any 3 block in log level daemon.notice quick proto icmp from any to any 4 block in log level auth.warn quick proto icmp from any to any 5 block in log level syslog.err quick proto icmp from any to any 6 block in log level lpr.crit quick proto icmp from any to any 7 block in log level news.alert quick proto icmp from any to any 8 block in log level uucp.emerg quick proto icmp from any to any 9 block in log level cron.debug quick proto icmp from any to any 10 block in log level ftp.info quick proto icmp from any to any [all …]
|
H A D | i18 | 1 pass in tos 0x50 from any to any 2 pass in tos 0x80 from any to any 3 pass out tos 0x80 from any to any 4 pass out tos 0x50 from any to any 5 block in ttl 0 from any to any 6 block in ttl 1 from any to any 7 block in ttl 2 from any to any 8 block in ttl 3 from any to any 9 block in ttl 4 from any to any 10 block in ttl 5 from any to any [all …]
|
H A D | i7 | 2 block in on lo0(!) proto tcp from any to any flags A/FSRPAU 3 pass in on lo0(!) proto tcp from any to any flags /SPA 4 block in on lo0(!) proto tcp from any to any flags C/A 5 pass in on lo0(!) proto tcp from any to any flags S/SA 6 block in on lo0(!) proto tcp from any to any flags S/SA 7 pass in on lo0(!) proto tcp from any to any flags S/FSRPAU 8 block in on lo0(!) proto tcp from any to any flags /A 9 pass in on lo0(!) proto tcp from any to any flags S/SA 10 pass in on lo0(!) proto tcp from any to any flags S/SA 11 block in on lo0(!) proto tcp from any to any flags S/SA [all …]
|
H A D | i9 | 2 block in from any to any with ipopts 3 pass in inet from any to any with opt nop,rr,zsu 4 pass in inet from any to any with opt nop,rr,zsu not opt lsrr,ssrr 7 pass in proto tcp from any to any flags S/FSRPAU with not oow keep state # count 0 8 block in proto tcp from any to any with oow 9 pass in proto tcp from any to any flags S/FSRPAU with not bad,bad-src,bad-nat 10 block in proto tcp from any to any flags S/FSRPAU with bad,not bad-src,not bad-nat 11 pass in quick from any to any with not short 12 block in quick from any to any with not nat 13 pass in quick from any to any with not frag-body [all …]
|
H A D | i1 | 5 count in from any to any 6 pass in from !any to any pps 10 7 block in from any to !any 10 block in log first on lo0(!) from any to any 11 pass in log body or-block quick from any to any 12 block return-rst in quick on le0(!) proto tcp from any to any 13 block return-icmp in on qe0(!) from any to any 14 block return-icmp(host-unr) in on qe0(!) from any to any 15 block return-icmp-as-dest in on le0(!) from any to any 16 block return-icmp-as-dest(port-unr) in on qe0(!) from any to any
|
/freebsd/libexec/rc/ |
H A D | rc.firewall | 84 ${fwcmd} add 100 pass all from any to any via lo0 85 ${fwcmd} add 200 deny all from any to 127.0.0.0/8 86 ${fwcmd} add 300 deny ip from 127.0.0.0/8 to any 88 ${fwcmd} add 400 deny all from any to ::1 89 ${fwcmd} add 500 deny all from ::1 to any 108 ${fwcmd} add pass ipv6-icmp from any to any icmp6types 1 111 ${fwcmd} add pass ipv6-icmp from any to any icmp6types 2,135,136 165 ${fwcmd} add 50 divert natd ip4 from any to any via ${natd_interface} 179 ${fwcmd} add 50 nat 123 ip4 from any to any via ${firewall_nat_interface} 198 ${fwcmd} add 65000 pass all from any to any [all …]
|
/freebsd/share/examples/ipfilter/ |
H A D | rules.txt | 2 # block all incoming TCP packets on le0 from host "foo" to any destination. 4 block in on le0 proto tcp from foo/32 to any 9 # block all outgoing TCP packets on le0 from any host to port 23 of host bar. 11 block out on le0 proto tcp from any to bar/32 port != 23 18 block in from any to any 24 # allow a variety of individual hosts to send any type of IP packet to any 27 pass in from 10.1.3.1 to any 28 pass in from 10.1.3.2 to any 29 pass in from 10.1.3.3 to any 30 pass in from 10.1.3.4 to any [all …]
|
H A D | example.14 | 4 log in on le0 from any to any with ipopts 6 # block any inbound packets on le0 which are fragmented and "too short" to 7 # do any meaningful comparison on. This actually only applies to TCP 11 block in log quick on le0 from any to any with short frag 18 log in on le0 proto tcp from any to any flags S/SA 20 # block and log any inbound ICMP unreachables 22 block in log on le0 proto icmp from any to any icmp-type unreach 24 # block and log any inbound UDP packets on le0 which are going to port 2049 27 block in log on le0 proto udp from any to any port = 2049 29 # quickly allow any packets to/from a particular pair of hosts [all …]
|
H A D | firewall.2 | 11 # Pass any packets not explicitly mentioned by subsequent rules 13 pass out from any to any 14 pass in from any to any 16 # Block any inherently bad packets coming in from the outside world. 21 block in log quick on ppp0 proto icmp from any to any icmp-type redir 23 block in log quick on ppp0 from any to any with ipopts 25 # Block any IP spoofing attempts. (Packets "from" our network 28 block in log quick on ppp0 from 192.168.4.0/24 to any 29 block in log quick on ppp0 from localhost to any 30 block in log quick on ppp0 from 0.0.0.0/32 to any [all …]
|
/freebsd/share/examples/ipfilter/rules/ |
H A D | example.3 | 4 block in from any to any 10 # allow a variety of individual hosts to send any type of IP packet to any 13 pass in from 10.1.3.1/32 to any 14 pass in from 10.1.3.2/32 to any 15 pass in from 10.1.3.3/32 to any 16 pass in from 10.1.3.4/32 to any 17 pass in from 10.1.3.5/32 to any 18 pass in from 10.1.0.13/32 to any 19 pass in from 10.1.1.1/32 to any 20 pass in from 10.1.2.1/32 to any [all …]
|
H A D | BASIC_1.FW | 27 block in log on ed0 from w.x.y.z/24 to any head 200 36 block in log quick from 127.0.0.0/8 to any group 100 37 block in log quick from any to 127.0.0.0/8 group 100 38 block in log quick from 127.0.0.0/8 to any group 200 39 block in log quick from any to 127.0.0.0/8 group 200 49 block in log quick from 10.0.0.0/8 to any group 100 50 block in log quick from 192.168.0.0/16 to any group 100 51 block in log quick from 172.16.0.0/12 to any group 100 55 block in log quick from a.b.c.d/24 to any group 100 60 pass in quick proto udp from any to any port = 53 keep state group 202 [all …]
|
H A D | example.sr | 4 log in on le0 from any to any with ipopts 6 # block any inbound packets on le0 which are fragmented and "too short" to 7 # do any meaningful comparison on. This actually only applies to TCP 11 block in log quick on le0 from any to any with short frag 18 log in on le0 proto tcp from any to any flags S/SA 20 # block and log any inbound ICMP unreachables 22 block in log on le0 proto icmp from any to any icmp-type unreach 24 # block and log any inbound UDP packets on le0 which are going to port 2049 27 block in log on le0 proto udp from any to any port = 2049 29 # quickly allow any packets to/from a particular pair of hosts [all …]
|
/freebsd/sbin/pfctl/tests/files/ |
H A D | pf0003.in | 2 pass in from any to any 4 block in proto tcp from any to any flags FUPEW/FSRPAUEW 5 block in proto tcp from any to any flags SF/SFRA 6 block in proto tcp from any to any flags /SFRAW 8 pass in proto { udp, icmp, tcp } from any to any flags S/SA 9 pass in from any to any flags S/SA no state 10 pass in from any to any flags any no state 11 pass in from any to any flags any 12 pass in from any to any keep state 13 pass in from any to any
|
H A D | pf0047.in | 8 pass in on lo0 from 0/0 to any label "$srcaddr" 9 pass in on lo0 from 127.0.0.1 to any label "$srcaddr" 10 pass in on lo0 from 127.0.0.1 to any label "$srcaddr$srcaddr" 11 pass in on lo0 from 127.0.0.1 to any label ":$srcaddr:$srcaddr:" 12 pass in on lo0 from 127.0.0.1/8 to any label "$srcaddr" 13 pass in on lo0 from 127.0.0.1/16 to any label "$srcaddr$srcaddr" 14 pass in on lo0 from 127.0.0.1/31 to any label ":$srcaddr:$srcaddr:" 15 pass in on lo0 inet6 from fe80::1 to any label "$srcaddr" 16 pass in on lo0 inet6 from fe80::1 to any label "$srcaddr$srcaddr" 17 pass in on lo0 inet6 from fe80::1 to any label ":$srcaddr:$srcaddr:" [all …]
|
H A D | pf0047.ok | 2 pass in all flags S/SA keep state label "any" 5 pass in on lo0 all flags S/SA keep state label "any" 6 pass in on lo0 inet all flags S/SA keep state label "any" 7 pass in on lo0 inet from 127.0.0.1 to any flags S/SA keep state label "127.0.0.1" 8 pass in on lo0 inet from 127.0.0.1 to any flags S/SA keep state label "127.0.0.1127.0.0.1" 9 pass in on lo0 inet from 127.0.0.1 to any flags S/SA keep state label ":127.0.0.1:127.0.0.1:" 10 pass in on lo0 inet from 127.0.0.0/8 to any flags S/SA keep state label "127.0.0.0/8" 11 pass in on lo0 inet from 127.0.0.0/16 to any flags S/SA keep state label "127.0.0.0/16127.0.0.0/16" 12 pass in on lo0 inet from 127.0.0.0/31 to any flags S/SA keep state label ":127.0.0.0/31:127.0.0.0/3… 13 pass in on lo0 inet6 from fe80::1 to any flags S/SA keep state label "fe80::1" [all …]
|
/freebsd/contrib/llvm-project/libcxx/include/ |
H A D | any | 14 any synopsis 24 class any 28 // 6.3.1 any construct/destruct 29 any() noexcept; 31 any(const any& other); 32 any(any&& other) noexcept; 35 any(ValueType&& value); 37 ~any(); 39 // 6.3.2 any assignments 40 any& operator=(const any& rhs); [all …]
|