From owner-freebsd-pf@FreeBSD.ORG Thu Oct 21 18:46:34 2004 Return-Path: Delivered-To: freebsd-pf@freebsd.org Received: from mx1.FreeBSD.org (mx1.freebsd.org [216.136.204.125]) by hub.freebsd.org (Postfix) with ESMTP id 2448016A4CE for ; Thu, 21 Oct 2004 18:46:34 +0000 (GMT) Received: from wproxy.gmail.com (wproxy.gmail.com [64.233.184.199]) by mx1.FreeBSD.org (Postfix) with ESMTP id D528B43D2D for ; Thu, 21 Oct 2004 18:46:33 +0000 (GMT) (envelope-from adnichols@gmail.com) Received: by wproxy.gmail.com with SMTP id 68so8018wri for ; Thu, 21 Oct 2004 11:46:30 -0700 (PDT) DomainKey-Signature: a=rsa-sha1; q=dns; c=nofws; s=beta; d=gmail.com; h=received:message-id:date:from:reply-to:to:subject:cc:in-reply-to:mime-version:content-type:content-transfer-encoding:references; b=sUq95w2O3zFQwIDhFOOTwyRswFeOHxv1hHMK8V9IIsHC7spnFJSz83HrNPbpXZX0BbxGJnqNGBCFSzvBFVWcnHWVPzmLhBceot/47Sps3uoyofCl18sA/RFnUNy7T4JusGL7nUNZ1TA3FghsWgJDa4s71eisEtpe09XGqZVT9cg= Received: by 10.54.4.69 with SMTP id 69mr88739wrd; Thu, 21 Oct 2004 11:46:30 -0700 (PDT) Received: by 10.54.35.52 with HTTP; Thu, 21 Oct 2004 11:46:30 -0700 (PDT) Message-ID: Date: Thu, 21 Oct 2004 11:46:30 -0700 From: Aaron Nichols To: rionda@gufi.org In-Reply-To: <1098383388.909.3.camel@kaiser.sig11.org> Mime-Version: 1.0 Content-Type: text/plain; charset=US-ASCII Content-Transfer-Encoding: 7bit References: <1098383388.909.3.camel@kaiser.sig11.org> cc: freebsd-pf@freebsd.org Subject: Re: Another problem with pf.. X-BeenThere: freebsd-pf@freebsd.org X-Mailman-Version: 2.1.1 Precedence: list Reply-To: Aaron Nichols List-Id: Technical discussion and general questions about packet filter (pf) List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Thu, 21 Oct 2004 18:46:34 -0000 You may want to verify that those are the correct options in rc.conf. At least in the 4.10 release the commands to enable the firewall are: firewall_enable="YES" firewall_script="/etc/pf.conf" (or whatever your firewall script is) Aaron > pf_enable="YES" > pf_rules="/etc/pf.conf" > > But if I do a > kaiser# pfctl -s nat > No ALTQ support in kernel > ALTQ related functions disabled > kaiser# pfctl -s rules > No ALTQ support in kernel > ALTQ related functions disabled > kaiser# >