I could use some help with a pf firewall I can't get to work. For some reason, ping/icmp won't get blocked by overload.
This works for ssh connections:
table <bruteforce> persist
block drop in log quick on $ext_if inet proto tcp from <bruteforce> port 22
pass in log on $ext_if inet proto tcp to...