From owner-freebsd-pf@FreeBSD.ORG Wed Nov 28 14:13:30 2012 Return-Path: Delivered-To: freebsd-pf@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [69.147.83.52]) by hub.freebsd.org (Postfix) with ESMTP id 0EF2014D for ; Wed, 28 Nov 2012 14:13:30 +0000 (UTC) (envelope-from buildit@nozukile.co.za) Received: from mta-teraco-2.cmobile.co.za (mta-teraco-2.cmobile.co.za [41.50.9.22]) by mx1.freebsd.org (Postfix) with ESMTP id 45AD88FC16 for ; Wed, 28 Nov 2012 14:13:28 +0000 (UTC) Received: from B10PC ([197.173.158.246]) by mta-teraco-2.cmobile.co.za (8.14.3/8.14.3) with SMTP id qASE8Cod018987 for ; Wed, 28 Nov 2012 16:08:16 +0200 Message-ID: <78AF5FBD32D74F589B1BE9606D4E62E8@B10PC> From: "Nozukile Build It" To: Subject: Drive A New Car from R499 P/M Date: Wed, 28 Nov 2012 16:08:11 +0200 MIME-Version: 1.0 X-Priority: 3 X-MSMail-Priority: Normal Importance: Normal X-Mailer: Microsoft Windows Live Mail 15.4.3555.308 X-MimeOLE: Produced By Microsoft MimeOLE V15.4.3555.308 X-MSISDN: 27742743675 X-CONN-IP: 197.173.158.246 X-Virus-Scanned: clamav-milter 0.97.6 at CellC-smtp-scanner-t2 X-Virus-Status: Clean Content-Type: text/plain; charset="iso-8859-1" Content-Transfer-Encoding: quoted-printable X-Content-Filtered-By: Mailman/MimeDel 2.1.14 X-BeenThere: freebsd-pf@freebsd.org X-Mailman-Version: 2.1.14 Precedence: list List-Id: "Technical discussion and general questions about packet filter \(pf\)" List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Wed, 28 Nov 2012 14:13:30 -0000 I am interested in buying a car please contact me on 0834440695 Thanx Wayne From owner-freebsd-pf@FreeBSD.ORG Thu Nov 29 11:04:21 2012 Return-Path: Delivered-To: freebsd-pf@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [69.147.83.52]) by hub.freebsd.org (Postfix) with ESMTP id 9E53B92E for ; Thu, 29 Nov 2012 11:04:21 +0000 (UTC) (envelope-from ml@my.gd) Received: from mail-wg0-f50.google.com (mail-wg0-f50.google.com [74.125.82.50]) by mx1.freebsd.org (Postfix) with ESMTP id 25DEC8FC0C for ; Thu, 29 Nov 2012 11:04:20 +0000 (UTC) Received: by mail-wg0-f50.google.com with SMTP id 12so2129199wgh.31 for ; Thu, 29 Nov 2012 03:04:19 -0800 (PST) X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=google.com; s=20120113; h=content-type:mime-version:subject:from:in-reply-to:date:cc :content-transfer-encoding:message-id:references:to:x-mailer :x-gm-message-state; bh=FyMe2ZCFxMDLtW24X+RcqQU1ygqQAs24EaZtjilmt2o=; b=P848OR4Ffuj7pnVNDyDOvvXy0VKLqik6O5Jk0GSCYDddC5rueH23a00UguQMazcN3e OwZVeWhNGCIkbRPuhxmj0HxdQpm5xCg0UIAgZdPQB8HbvIrPW5BClTp6okpY7CaPwTrz J0rw+56vZe9XDUHzmcJGhJsBU15fjFpeJjxT6XBDvjbsenD8087TeiL/2vdF250KWO+1 qN4lNlJRvySSGpr75M6D3RpBX1r4U2Et0kqtCP8RYeN9V71oz5YS49eyImzpZiZTz0Ek 1HRPAP23GzWWcVe96liqdu0xaqTj4LLuGiYkIjhWWfqRblfyWQ9pROHN6skhFnUHLsLE T2xQ== Received: by 10.180.94.169 with SMTP id dd9mr37858406wib.14.1354187059256; Thu, 29 Nov 2012 03:04:19 -0800 (PST) Received: from dfleuriot-at-hi-media.com ([83.167.62.196]) by mx.google.com with ESMTPS id p2sm1881377wic.7.2012.11.29.03.04.16 (version=TLSv1/SSLv3 cipher=OTHER); Thu, 29 Nov 2012 03:04:18 -0800 (PST) Content-Type: text/plain; charset=us-ascii Mime-Version: 1.0 (Mac OS X Mail 6.2 \(1499\)) Subject: Re: Upgrading FreeBSD to use the NEW pf syntax. From: Fleuriot Damien In-Reply-To: Date: Thu, 29 Nov 2012 12:04:16 +0100 Content-Transfer-Encoding: quoted-printable Message-Id: <541D2C5C-F045-4CE2-B452-25B4CB65D4F3@my.gd> References: To: Odhiambo Washington X-Mailer: Apple Mail (2.1499) X-Gm-Message-State: ALoCoQm0l9WnGlAdkuIt6ZjrcoziDhFI9EshQxLmBwiimGibtJzPygvZwc73ir5kX03DipoV4LdJ Cc: freebsd-pf@freebsd.org X-BeenThere: freebsd-pf@freebsd.org X-Mailman-Version: 2.1.14 Precedence: list List-Id: "Technical discussion and general questions about packet filter \(pf\)" List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Thu, 29 Nov 2012 11:04:21 -0000 On Nov 20, 2012, at 7:46 AM, Odhiambo Washington = wrote: > On Tue, Nov 20, 2012 at 5:23 AM, Paul Webster = > wrote: >=20 >> Good day all, >>=20 >> I am aware this is a much discussed subject since the upgrade of PF, = I >> believe the final decision was that to many users are used to the old >> style pf and an upgrade to the new syntax would cause to much = confusion. >>=20 >> There was a recent debate on ##freebsd about this issue and I was = inclined >> to mail in and get your opinions; basically it boiled down to the = majority >> of users wanting either: >>=20 >> 1) To move to the newer pf and just add to releases notes what had >> happened, >> and >> 2) my own personal opinion: creating 'pf2-*' as a kernel option tree, >> basically using the newer pf syntax and allowing users to choose. >>=20 >> I would be interested to know the feedback from you guys as to be = honest >> there seems to be quite a few users who actually DO want the new = style >> format and functionality that comes with. >>=20 >> I Attached the log of the conversation just for reference. >>=20 >>=20 > It's been difficult enough to maintain PF on FreeBSD because of the = time > needed to be invested in the FreeBSD port. > This situation remains to date, from what I understand. I guess = someone can > look at how many bugs/feature requests still remain open for PF on = FreeBSD. >=20 > I therefore feel that whoever wants to run PF should use a dedicated > OpenBSD box as a firewall/whatever they use PF for. > There is really no point trying to make FreeBSD be OpenBSD when it = comes to > such requirements. Look at the advantages of "separation of power" - = give > to OpenBSD the fireallpower and FreeBSD the serverpower. >=20 > In keeping with the K.I.S.S principle, please let anyone needing new = PF > syntax just use OpenBSD. >=20 I for one can't agree with this line of thinking. The *only* reason we use fbsd at work is as firewalls, which sometimes = also act as load balancers through the use of either relayd, nginx, = and/or haproxy. The "real" servers themselves run debian and are much easier and = convenient to upgrade. Following your logic, we'd ditch freebsd entirely, in my case ; way to = erode the userbase.