Browse Source

Allow incoming ssh connections in the initial temporary rule set that's

active before /etc/pf.conf is loaded, just in case loading fails (and
leaves the inital set active). ok deraadt@
OPENBSD_3_2
dhartmei 22 years ago
parent
commit
06074e6554
1 changed files with 2 additions and 1 deletions
  1. +2
    -1
      src/etc/rc

+ 2
- 1
src/etc/rc View File

@ -1,4 +1,4 @@
# $OpenBSD: rc,v 1.193 2002/02/25 03:30:46 deraadt Exp $
# $OpenBSD: rc,v 1.194 2002/05/23 19:38:18 dhartmei Exp $
# System startup script run by init on autoboot # System startup script run by init on autoboot
# or after single-user. # or after single-user.
@ -125,6 +125,7 @@ if [ "X${pf}" != X"NO" ]; then
# don't kill NFS # don't kill NFS
RULES="$RULES\npass in proto udp from any port { 111, 2049 } to any" RULES="$RULES\npass in proto udp from any port { 111, 2049 } to any"
RULES="$RULES\npass out proto udp from any to any port { 111, 2049 }" RULES="$RULES\npass out proto udp from any to any port { 111, 2049 }"
RULES="$RULES\npass in proto tcp from any to any port 22 keep state"
;; ;;
esac esac
echo $RULES | pfctl -R - -e echo $RULES | pfctl -R - -e


Loading…
Cancel
Save