|
From: Kevin Z. <kev...@gm...> - 2015-08-04 00:35:57
|
On 08/03/2015 19:22, li...@la... wrote: > 02500 allow tcp from any to me dst-port 22 ipfw is a first-rule-wins firewall. Since SSHGuard adds rules for ipfw around rule 50000 (at least using the current, crash-prone ipfw backend), its rules are never matched. You'll need to adjust your ruleset so that this particular rule has a lower number. Best, Kevin Zheng -- Kevin Zheng kev...@gm... | ke...@kd... | PGP: 0xC22E1090 |