mirror of
https://github.com/Stichting-MINIX-Research-Foundation/netbsd.git
synced 2025-09-13 00:57:28 -04:00
14 lines
357 B
Groff
14 lines
357 B
Groff
# $NetBSD: example.9,v 1.1.1.1 2012/03/23 21:20:15 christos Exp $
|
|
#
|
|
# drop all packets without IP security options
|
|
#
|
|
block in all
|
|
pass in all with opt sec
|
|
#
|
|
# only allow packets in and out on le1 which are top secret
|
|
#
|
|
block out on le1 all
|
|
pass out on le1 all with opt sec-class topsecret
|
|
block in on le1 all
|
|
pass in on le1 all with opt sec-class topsecret
|