From 04bf0512a485968e390190e51814c9603860893d Mon Sep 17 00:00:00 2001 From: henning <> Date: Thu, 26 Jan 2006 12:44:59 +0000 Subject: [PATCH] set skip is no good idea on int_if in this sample rulseset that also has a rdo on $int_if that stops working then. pt out by cedric --- src/etc/pf.conf | 5 +++-- 1 file changed, 3 insertions(+), 2 deletions(-) diff --git a/src/etc/pf.conf b/src/etc/pf.conf index 9fc7bb75..f1041162 100644 --- a/src/etc/pf.conf +++ b/src/etc/pf.conf @@ -1,4 +1,4 @@ -# $OpenBSD: pf.conf,v 1.29 2005/08/23 02:52:58 henning Exp $ +# $OpenBSD: pf.conf,v 1.30 2006/01/26 12:44:59 henning Exp $ # # See pf.conf(5) and /usr/share/pf for syntax and examples. # Remember to set net.inet.ip.forwarding=1 and/or net.inet6.ip6.forwarding=1 @@ -10,7 +10,7 @@ #table persist #table persist -#set skip on { lo $int_if } +#set skip on lo #scrub in @@ -24,6 +24,7 @@ #block in #pass out keep state +#pass quick on $int_if #antispoof quick for { lo $int_if } #pass in on $ext_if proto tcp to ($ext_if) port ssh keep state