sobrado
48f192013c
pf should block the port range allocated by net.inet.tcp.baddynamic
for the X protocol instead of port 6000 only; this way pf provides the same protection level to all X servers. ok sthen@; "I am convinced that 6000-6010 is acceptable for blocking in pf" deraadt@, "i'd thought of something similar" oga@ |
15 years ago | |
---|---|---|
src | pf should block the port range allocated by net.inet.tcp.baddynamic | 15 years ago |