1. But pf adds the keep state and flags S/SA to all rules by default, and the packets which are returning are matched to download queue..
2. I want smth like this:
First step: user dial up to my server. If login and pass is ok then step two
Second step: system creating tun* device, on which will be data transfered, and i want to limit this traffic by pf ??? Am i wrong ?
|