From owner-freebsd-pf@FreeBSD.ORG Thu Mar 24 23:16:39 2005 Return-Path: Delivered-To: freebsd-pf@freebsd.org Received: from mx1.FreeBSD.org (mx1.freebsd.org [216.136.204.125]) by hub.freebsd.org (Postfix) with ESMTP id 0F9F216A4CE for ; Thu, 24 Mar 2005 23:16:39 +0000 (GMT) Received: from wproxy.gmail.com (wproxy.gmail.com [64.233.184.206]) by mx1.FreeBSD.org (Postfix) with ESMTP id A7FD543D41 for ; Thu, 24 Mar 2005 23:16:38 +0000 (GMT) (envelope-from jsimola@gmail.com) Received: by wproxy.gmail.com with SMTP id 37so600807wra for ; Thu, 24 Mar 2005 15:16:38 -0800 (PST) DomainKey-Signature: a=rsa-sha1; q=dns; c=nofws; s=beta; d=gmail.com; h=received:message-id:date:from:reply-to:to:subject:cc:in-reply-to:mime-version:content-type:content-transfer-encoding:references; b=OzCl6+9JVWaovqfrPa/cFiZCx6vGgxTr39GFbXPC8pQ9jpDcRAijE2wBE74/A52iCVfRPNU9ZhKx7WNtBDgaEjv8F6IwCr35dKDGsO1jtw//cb9mCXDV5P6Lu4/whIeZq2E5O83RxNabITaCVvlfaPvwxirI2NJdOy/81G2Ym54= Received: by 10.54.97.12 with SMTP id u12mr642332wrb; Thu, 24 Mar 2005 15:16:38 -0800 (PST) Received: by 10.54.39.34 with HTTP; Thu, 24 Mar 2005 15:16:38 -0800 (PST) Message-ID: <8eea04080503241516211d5aea@mail.gmail.com> Date: Thu, 24 Mar 2005 15:16:38 -0800 From: Jon Simola To: BB In-Reply-To: <787dcac20503241448430a7de2@mail.gmail.com> Mime-Version: 1.0 Content-Type: text/plain; charset=ISO-8859-1 Content-Transfer-Encoding: 7bit References: <787dcac20503241448430a7de2@mail.gmail.com> cc: FreeBSD-pf mail list Subject: Re: Isn't there a way to parse, don't load rules and complain about syntax errors or missing variables ? X-BeenThere: freebsd-pf@freebsd.org X-Mailman-Version: 2.1.1 Precedence: list Reply-To: jon@abccomm.com List-Id: Technical discussion and general questions about packet filter (pf) List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Thu, 24 Mar 2005 23:16:39 -0000 On Thu, 24 Mar 2005 16:48:48 -0600, BB wrote: > However when I looked at the configuration file again the scrub rule > had the explicate interface name fxp0 > > This new box doesn't have fxp0 It will probably make sense if you think that some interfaces like vlan and tun are created and destroyed. You probably don't want to reload your firewall config everytime you bring up a PPP link. ipfw has the same feature. -- Jon Simola Systems Administrator ABC Communications