The latest Valuable News by @vermaden https://vermaden.wordpress.com/2025/12/08/valuable-news-2025-12-08/ notes that The Book of PF, 4th edition is coming soon (also https://nxdomain.no/~peter/yes_the_book_of_pf_4th_ed_is_coming.html, https://bsdly.blogspot.com/2025/07/yes-book-of-pf-4th-edition-is-coming.html) @nostarch #freebsd #openbsd #pf #packetfilter #bookofpf #4thedition
The latest Valuable News by @vermaden https://vermaden.wordpress.com/2025/12/08/valuable-news-2025-12-08/ notes that The Book of PF, 4th edition is coming soon (also https://nxdomain.no/~peter/yes_the_book_of_pf_4th_ed_is_coming.html, https://bsdly.blogspot.com/2025/07/yes-book-of-pf-4th-edition-is-coming.html) @nostarch #freebsd #openbsd #pf #packetfilter #bookofpf #4thedition
Long rumored and eagerly anticipated by some, the fourth edition of The Book of PF is now available for preorder
More: https://nxdomain.no/~peter/yes_the_book_of_pf_4th_ed_is_coming.html (https://bsdly.blogspot.com/2025/07/yes-book-of-pf-4th-edition-is-coming.html), https://nostarch.com/book-of-pf-4th-edition @nostarch #openbsd #freebsd #pf #networking #bookofpf #freesoftware #firewalls
Long rumored and eagerly anticipated by some, the fourth edition of The Book of PF is now available for preorder
More: https://nxdomain.no/~peter/yes_the_book_of_pf_4th_ed_is_coming.html (https://bsdly.blogspot.com/2025/07/yes-book-of-pf-4th-edition-is-coming.html), https://nostarch.com/book-of-pf-4th-edition @nostarch #openbsd #freebsd #pf #networking #bookofpf #freesoftware #firewalls
@philvuchetich @mwl if you are firewalling, allow fe80::/64 on all ipv6 interfaces. Neighbor discovery failures have weird side effects.
Thanks again - the minor edit in pf.conf solved it - previously only echoreq, unreach were allowed, now all icmp6 is allowed.
For reference: current rule is
"pass inet6 proto icmp6 from fe:80::/64 to fe:80::/64"
I'll plan to allow on all interfaces within the LAN -
"pass inet6 proto icmp6"
And then evaluate what the firewall will do if some ICMP types should be blocked after reading the upcoming #BookOfPF by @pitrh . That part is more complex because my IPv6 connection is a tunnel via HE (neither the cable nor fiber ISP offers IPv6 native connectivity), so I need to read more first.
***
I just left the IPv4 and IPv6 ping running overnight, and the connectivity is resolved:
IPv6 --- ping statistics ---
54559 packets transmitted, 54557 packets received, 0.0% packet loss
round-trip min/avg/max/stddev = 0.070/0.251/0.760/0.076 ms
IPv4 --- ping statistics ---
54564 packets transmitted, 54564 packets received, 0.0% packet loss
round-trip min/avg/max/stddev = 0.061/0.230/0.468/0.027 ms
This is over a 1 Gb connection with 3 switches between hosts, so an average 250 ns ping time is fine.
@gumnos @stefano For a bit of my writing that is not necessarily about spamd (but still mostly with an #openbsd and other #opensource theme), there is my "Short reading list" https://nxdomain.no/~peter/the_short_reading_list.html which is close to what I came up with for some #bookofpf promo material that @nostarch were putting together earlier this year.
@gumnos @stefano my setup is something that developed over a few years almost 20 years ago. Back then, exim was a reasonable MTA choice, I had been using spamassassin for a while when I set up a spamd in front of it.
The "18 years of greytrapping" piece https://nxdomain.no/~peter/eighteen_years_of_greytrapping.html has *all* the links, most of them potentially useful I think.
The main takeaway is that a greylisting spamd takes a lot of load off any content filtering (and then there is greytrapping for entertainment)
@gumnos @stefano For a bit of my writing that is not necessarily about spamd (but still mostly with an #openbsd and other #opensource theme), there is my "Short reading list" https://nxdomain.no/~peter/the_short_reading_list.html which is close to what I came up with for some #bookofpf promo material that @nostarch were putting together earlier this year.
My upcoming book, The Book of PF 4th edition, is part of B&N’s pre-order sale Sept 3–5! Use code PREORDER25 for 25% off (35% for Premium members).
#bookofpf #bnpreorder #openbsd #freebsd #pf #packetfilter #networking #security #nostarch #barnesandnoble
My upcoming book, The Book of PF 4th edition, is part of B&N’s pre-order sale Sept 3–5! Use code PREORDER25 for 25% off (35% for Premium members).
#bookofpf #bnpreorder #openbsd #freebsd #pf #packetfilter #networking #security #nostarch #barnesandnoble
"Yes, The Book of PF, 4th Edition Is Coming Soon" https://nxdomain.no/~peter/yes_the_book_of_pf_4th_ed_is_coming.html (also https://bsdly.blogspot.com/2025/07/yes-book-of-pf-4th-edition-is-coming.html), title still true, actual publication date TBD, #bookofpf #pf #packetfilter #openbsd #freebsd #networking #security #trickery #hacking
"Yes, The Book of PF, 4th Edition Is Coming Soon" https://nxdomain.no/~peter/yes_the_book_of_pf_4th_ed_is_coming.html (also https://bsdly.blogspot.com/2025/07/yes-book-of-pf-4th-edition-is-coming.html), title still true, actual publication date TBD, #bookofpf #pf #packetfilter #openbsd #freebsd #networking #security #trickery #hacking
The latest BSD Weekly https://bsdweekly.com/issues/245 features "Eighteen Years of Greytrapping ..." (https://nxdomain.no/~peter/eighteen_years_of_greytrapping.html and https://bsdly.blogspot.com/2025/08/eighteen-years-of-greytrapping-is.html - a warmup to #bookofpf 4th ed https://nostarch.com/book-of-pf-4th-edition) #openbsd #freebsd #security #mail #spam #hacking #cybercrime @nostarch
The latest BSD Weekly https://bsdweekly.com/issues/245 features "Eighteen Years of Greytrapping ..." (https://nxdomain.no/~peter/eighteen_years_of_greytrapping.html and https://bsdly.blogspot.com/2025/08/eighteen-years-of-greytrapping-is.html - a warmup to #bookofpf 4th ed https://nostarch.com/book-of-pf-4th-edition) #openbsd #freebsd #security #mail #spam #hacking #cybercrime @nostarch
Yes, The Book of PF, 4th Edition Is Coming Soon https://nxdomain.no/~peter/yes_the_book_of_pf_4th_ed_is_coming.html (also tracked https://bsdly.blogspot.com/2025/07/yes-book-of-pf-4th-edition-is-coming.html) #openbsd #freebsd #bookofpf #pf #packetfilter #book #networking #security #freesoftware #libresoftware #shamelessplug
Yes, The Book of PF, 4th Edition Is Coming Soon https://nxdomain.no/~peter/yes_the_book_of_pf_4th_ed_is_coming.html (also tracked https://bsdly.blogspot.com/2025/07/yes-book-of-pf-4th-edition-is-coming.html) #openbsd #freebsd #bookofpf #pf #packetfilter #book #networking #security #freesoftware #libresoftware #shamelessplug
We are still working on The Book of PF, 4th ed.
Preorders are open at https://nostarch.com/book-of-pf-4th-edition, read about the work at https://nxdomain.no/~peter/yes_the_book_of_pf_4th_ed_is_coming.html (also tracked at https://bsdly.blogspot.com/2025/07/yes-book-of-pf-4th-edition-is-coming.html) #bookofpf #newedition #freebsdd #openbsd #pf #packetfilter #networking #security #freesoftware #libresoftware
We are still working on The Book of PF, 4th ed.
Preorders are open at https://nostarch.com/book-of-pf-4th-edition, read about the work at https://nxdomain.no/~peter/yes_the_book_of_pf_4th_ed_is_coming.html (also tracked at https://bsdly.blogspot.com/2025/07/yes-book-of-pf-4th-edition-is-coming.html) #bookofpf #newedition #freebsdd #openbsd #pf #packetfilter #networking #security #freesoftware #libresoftware
oh, my "Yes, The Book of PF, 4th Edition Is Coming Soon" blog post https://bsdly.blogspot.com/2025/07/yes-book-of-pf-4th-edition-is-coming.html is on hackernews: https://news.ycombinator.com/item?id=44657803#bookofpf #pf #packetfilter #openbsd #freebsd #networking (non-tracked: https://nxdomain.no/~peter/yes_the_book_of_pf_4th_ed_is_coming.html)
oh, my "Yes, The Book of PF, 4th Edition Is Coming Soon" blog post https://bsdly.blogspot.com/2025/07/yes-book-of-pf-4th-edition-is-coming.html is on hackernews: https://news.ycombinator.com/item?id=44657803#bookofpf #pf #packetfilter #openbsd #freebsd #networking (non-tracked: https://nxdomain.no/~peter/yes_the_book_of_pf_4th_ed_is_coming.html)