From owner-freebsd-questions@FreeBSD.ORG Tue Jul 8 17:05:06 2008 Return-Path: Delivered-To: freebsd-questions@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2001:4f8:fff6::34]) by hub.freebsd.org (Postfix) with ESMTP id 70806106564A for ; Tue, 8 Jul 2008 17:05:06 +0000 (UTC) (envelope-from annkok2001@yahoo.com) Received: from web53302.mail.re2.yahoo.com (web53302.mail.re2.yahoo.com [206.190.49.92]) by mx1.freebsd.org (Postfix) with SMTP id 02A6F8FC15 for ; Tue, 8 Jul 2008 17:05:05 +0000 (UTC) (envelope-from annkok2001@yahoo.com) Received: (qmail 92918 invoked by uid 60001); 8 Jul 2008 16:38:24 -0000 DomainKey-Signature: a=rsa-sha1; q=dns; c=nofws; s=s1024; d=yahoo.com; h=Received:X-Mailer:Date:From:Reply-To:Subject:To:MIME-Version:Content-Type:Message-ID; b=GwK1ty/AOohNJvFm6yAaYgbm3HL4/5zUSeo/hAONrHJ6zrbr/VWmNAaOFONFelO2VVOGS/xir20vHclUS2AI1gYdT2lG/1A0BeTpDOG7E4+VgKeV+08HPBMe3HzX7/mgIFHn3EdhqoXj2C2zv7ORkHlfV6l1NY7CwuXrY2++mio=; Received: from [76.10.149.110] by web53302.mail.re2.yahoo.com via HTTP; Tue, 08 Jul 2008 09:38:23 PDT X-Mailer: YahooMailWebService/0.7.199 Date: Tue, 8 Jul 2008 09:38:23 -0700 (PDT) From: ann kok To: freebsd-questions@freebsd.org MIME-Version: 1.0 Content-Type: text/plain; charset=us-ascii Message-ID: <41756.92839.qm@web53302.mail.re2.yahoo.com> Subject: ipf question X-BeenThere: freebsd-questions@freebsd.org X-Mailman-Version: 2.1.5 Precedence: list Reply-To: annkok2001@yahoo.com List-Id: User questions List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Tue, 08 Jul 2008 17:05:06 -0000 Hi all I am using ipf associated with ippool. When I need to change /etc/ipf/ippool.conf, say add a new member in a group, ippool -F and ippool -f /etc/ipf/ippool.conf doesn't seem to work. I also tried reloading the ipfilter rule by 'ipf -Fa -f /etc/ipf/ipf.conf', but ipf doesn't seem to re-read the ippool.conf The only way that has worked is to 'ipf -D' and then 'ipf -E', manually reload ippool and then reload the ipf.conf . But this is not ideal for me since restarting the ipf would flush the state table, thus disconnect existing connection. Is there any way to make change to ippool without dropping connectivity? Thank you