From owner-freebsd-current@FreeBSD.ORG Sun Mar 21 18:31:09 2004 Return-Path: Delivered-To: freebsd-current@freebsd.org Received: from mx1.FreeBSD.org (mx1.freebsd.org [216.136.204.125]) by hub.freebsd.org (Postfix) with ESMTP id 72A0416A4CE for ; Sun, 21 Mar 2004 18:31:09 -0800 (PST) Received: from rwcrmhc12.comcast.net (rwcrmhc12.comcast.net [216.148.227.85]) by mx1.FreeBSD.org (Postfix) with ESMTP id 4D82043D2F for ; Sun, 21 Mar 2004 18:31:09 -0800 (PST) (envelope-from rschmali@comcast.net) Received: from BARN (c-67-163-131-17.client.comcast.net[67.163.131.17]) by comcast.net (rwcrmhc12) with SMTP id <2004032202310701400li6obe>; Mon, 22 Mar 2004 02:31:08 +0000 Message-ID: <047d01c40fb5$bbd67db0$0201a8c0@idlewild.net> From: "Robert Schmaling" To: "Max Laier" , "Claus Guttesen" References: <024201c40eba$22912520$0201a8c0@idlewild.net> <20040320222504.18517.qmail@web14106.mail.yahoo.com> <20040321192041.GA43656@router.laiers.local> Date: Sun, 21 Mar 2004 21:31:07 -0500 MIME-Version: 1.0 Content-Type: text/plain; charset="iso-8859-1" Content-Transfer-Encoding: 7bit X-Priority: 3 X-MSMail-Priority: Normal X-Mailer: Microsoft Outlook Express 6.00.2800.1158 X-MIMEOLE: Produced By Microsoft MimeOLE V6.00.2800.1165 cc: freebsd-current@freebsd.org Subject: Re: pf startup script X-BeenThere: freebsd-current@freebsd.org X-Mailman-Version: 2.1.1 Precedence: list List-Id: Discussions about the use of FreeBSD-current List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Mon, 22 Mar 2004 02:31:09 -0000 Seems to work just fine. Thank you, ----- Original Message ----- From: "Max Laier" To: "Claus Guttesen" Cc: "Robert Schmaling" ; Sent: Sunday, March 21, 2004 2:20 PM Subject: Re: pf startup script On Sat, Mar 20, 2004 at 11:25:04PM +0100, Claus Guttesen wrote: > > Is there supposed to be a startup script for pf > > installed now that it's part > > of the base system, or am I missing something? > > A bsd-fellow suggested I used the startup-script from > pf in the ports-col. I placed it in > /usr/local/etc/rc.d and changed the script, so it > would load the pf-mod. from /boot/kernel. > > You cold copy ipfilter/ipfw and make a pf-script. I planned to commit something for a while, but real-life (i.e. exams) and missing libpcap-support -> missing pflogd stopped me until now. Attached is my wip-version of rc.d/pf and required diff to defaults/rc.conf. Comments welcome, as I am not very familiar with rcNG (it's more or less a copy of the ipfilter script). -- Best regards, | mlaier@freebsd.org Max Laier | ICQ #67774661 http://pf4freebsd.love2party.net/ | mlaier@EFnet