2 # block all incoming TCP connections but send back a TCP-RST for ones to
5 block in proto tcp from any to any flags S/SA
6 block return-rst in quick proto tcp from any to any port = 113 flags S/SA
8 # block all inbound UDP packets and send back an ICMP error.
10 block return-icmp in proto udp from any to any