All,
I am a bit of a newbie with pf on FreeBSD and I need some advice on some firewall rules/configuration changes to prevent/stop dos attacks. I have setup a fairly basic system allowing ftp, www and ssh packets inbound.
If I check my firewall state I am getting hammered with connections on port 21 from various random hosts, too many to actually add into a manual block table.. The ones I do add in my block table do actually stop, but I am getting way too many IP's listed to manually add.
Are there any helpful entries I can add into my pf.conf file to prevent such attacks?
Thanks in advance.
D
I am a bit of a newbie with pf on FreeBSD and I need some advice on some firewall rules/configuration changes to prevent/stop dos attacks. I have setup a fairly basic system allowing ftp, www and ssh packets inbound.
If I check my firewall state I am getting hammered with connections on port 21 from various random hosts, too many to actually add into a manual block table.. The ones I do add in my block table do actually stop, but I am getting way too many IP's listed to manually add.
Are there any helpful entries I can add into my pf.conf file to prevent such attacks?
Thanks in advance.
D