Honeypots mailing list archives

Re: Outgoing Traffic measure in OpenBSD an pf


From: Volker Kindermann <ml () ps102 de>
Date: Tue, 14 Dec 2004 11:36:44 +0100

I had an OpenBSD as my firewall and I would like tu measure the
Outgoing traffic in order to detect activity in my HoneyNet and add a
pf rule to block the activity in the HoneyPot (just like HoneyWall
works...but in OpenBSD).....

I haven't found a way to do that, is there a parameter in pf like -m
limit in iptables??

I know only of a new feature for -current. See more here:

http://www.undeadly.org/cgi?action=article&sid=20041204134916&mode=expanded


 -volker


Current thread: