From owner-freebsd-doc@freebsd.org Wed Aug 12 19:12:00 2015 Return-Path: Delivered-To: freebsd-doc@mailman.ysv.freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2001:1900:2254:206a::19:1]) by mailman.ysv.freebsd.org (Postfix) with ESMTP id 27B2B9A05EF for ; Wed, 12 Aug 2015 19:12:00 +0000 (UTC) (envelope-from reed@reedmedia.net) Received: from c-0500.emailmediator.com (c-0500.emailmediator.com [64.85.162.118]) (using TLSv1 with cipher DHE-RSA-AES256-SHA (256/256 bits)) (Client did not present a certificate) by mx1.freebsd.org (Postfix) with ESMTPS id 0954A1BF3 for ; Wed, 12 Aug 2015 19:11:59 +0000 (UTC) (envelope-from reed@reedmedia.net) Received: from pool-108-19-50-38.dllstx.fios.verizon.net ([108.19.50.38] helo=reedmedia.net) by c-0500.emailmediator.com with esmtpa (Exim 4.69) (envelope-from ) id 1ZPbRO-0006B3-3v for freebsd-doc@FreeBSD.org; Wed, 12 Aug 2015 15:11:58 -0400 Received: from reed@reedmedia.net by reedmedia.net with local (mailout 0.17) id 28694-1439406718; Wed, 12 Aug 2015 14:11:59 -0500 Date: Wed, 12 Aug 2015 14:11:58 -0500 (CDT) From: "Jeremy C. Reed" X-X-Sender: reed@t1.m.reedmedia.net To: freebsd-doc@FreeBSD.org Subject: pf table replace and firewalls-pf.html Message-ID: User-Agent: Alpine 2.11 (NEB 23 2013-08-11) MIME-Version: 1.0 Content-Type: TEXT/PLAIN; charset=US-ASCII X-BeenThere: freebsd-doc@freebsd.org X-Mailman-Version: 2.1.20 Precedence: list List-Id: Documentation project List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Wed, 12 Aug 2015 19:12:00 -0000 I was reading https://www.freebsd.org/doc/handbook/firewalls-pf.html and it says: -=-=-=-=-=-=-= Alternatively, /etc/clients can be updated with the in-memory table contents: # pfctl -t clients -T replace -f /etc/clients -=-=-=-=-=-=-= That is confusing and seems to imply that the file is created (or updated) from the in-memory table. But actually it is the other way. This could say: -=-=-=-=-=-=-= The in-memory table can be updated from a file, for example: # pfctl -t clients -T replace -f /etc/clients -=-=-=-=-=-=-= Note I am not on this list.