> I think the general syntax would be if you could say "for one of my
> own IP#"  that would be very powerful:
> 
>       add allow tcp from any to me 22
>       add deny tcp from any to not me 22

the 'me' thing is relatively simple to implement, it suffices to scan
the list of IP associated with all interfaces. Can be time-consuming.

        cheers
        luigi
-----------------------------------+-------------------------------------
  Luigi RIZZO, [EMAIL PROTECTED]  . Dip. di Ing. dell'Informazione
  http://www.iet.unipi.it/~luigi/  . Universita` di Pisa
  TEL/FAX: +39-050-568.533/522     . via Diotisalvi 2, 56126 PISA (Italy)
  Mobile   +39-347-0373137
-----------------------------------+-------------------------------------


To Unsubscribe: send mail to [EMAIL PROTECTED]
with "unsubscribe freebsd-current" in the body of the message

Reply via email to