NetBSD/dist/ipf/rules/example.9
2002-09-19 08:08:14 +00:00

14 lines
351 B
Groff

# $NetBSD: example.9,v 1.2 2002/09/19 08:08:23 martti Exp $
#
# drop all packets without IP security options
#
block in all
pass in all with opt sec
#
# only allow packets in and out on le1 which are top secret
#
block out on le1 all
pass out on le1 all with opt sec-class topsecret
block in on le1 all
pass in on le1 all with opt sec-class topsecret