Thursday, January 02, 2020

Re: pflog flooded with igmp queries

On Thu, Jan 2, 2020 at 1:00 AM Sebastien Marie <semarie@online.fr> wrote:
> <snip> And by default, packets
> with ip-options are block-logged.

Can't seem to find that specific info anywhere.

> I suppose that adding an explicit rule with allow-opts should do the trick.
> depending your need (block or allow):
> block return proto igmp to 224/4 allow-opts
> or
> pass proto igmp to 224/4 allow-opts

I used:
block proto igmp

Thanks!
Chris

No comments:

Post a Comment