Skip site navigation (1)Skip section navigation (2)
Date:      Mon, 02 May 2022 16:18:53 +0000
From:      bugzilla-noreply@freebsd.org
To:        pf@FreeBSD.org
Subject:   [Bug 263626] PF is unable to load more than 200000 entries
Message-ID:  <bug-263626-16861-42nIt8hZ9a@https.bugs.freebsd.org/bugzilla/>
In-Reply-To: <bug-263626-16861@https.bugs.freebsd.org/bugzilla/>
References:  <bug-263626-16861@https.bugs.freebsd.org/bugzilla/>

next in thread | previous in thread | raw e-mail | index | archive | help
https://bugs.freebsd.org/bugzilla/show_bug.cgi?id=3D263626

--- Comment #6 from Chris Hutchinson <portmaster@bsdforge.com> ---
(In reply to Kajetan Staszkiewicz from comment #5)
I don't understand. Anyone filtering with pf(4) using
tables should know that they will need to monitor the
size of the tables in use. Their system has limits.
It is not the responsibility of pf(4) to ensure those
thresholds are set high enough. It is the responsibility
of the administrator. The pfctl(8) man page explains
all of this, and also provides examples. If the
administrator is unwilling to monitor, eventually pf
will be unable to load some table and bail. Leaving it
up to the administrator to discover how large the entry
count is. increase the threshold && restart pf(4). It's
as simple as that. The whole process shouldn't any longer
than 20 seconds to perform -- no reboot required.

--=20
You are receiving this mail because:
You are the assignee for the bug.=



Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?bug-263626-16861-42nIt8hZ9a>