Old 16th November 2008
Originally Posted by ikevmowe View Post
My friend tested it, and I have tried tcpdump it, I do not see any packets coming in on port 55555. Are there anything wrong with my rules?
If you run tcpdump on the external interface (tcpdump -ni fxp0) , you will see the packets as they arrive, and before pf gets a chance to block them.

If tcpdump -ni fxp0 doesn't show packets with destination port 55555 then your friend possibly forget to tell ssh to use 55555 instead of the default 22.
You don't need to be a genius to debug a pf.conf firewall ruleset, you just need the guts to run tcpdump
