View Single Post
  #3   (View Single Post)  
Old 1st March 2017
frcc frcc is offline
Don't Worry Be Happy!
 
Join Date: Jul 2011
Location: hot,dry,dusty,rainy,windy,straight winds, tornado,puts the fear of God in you-Texas
Posts: 145
Default block ip

Table is much faster than variable.
I block all foreign ip cidr's in pf.conf using table which is large and instantaneous.
i/we use
"block in quick log (all) on fxp0 from !<usip> to any label "foreign"
where <usip> is a .csv file of us based cidr's

You can update that file as desired.
It cuts down the amount of traffic greatly if you r not interested in a non-us
based cidr.
Reply With Quote