From owner-freebsd-pf@FreeBSD.ORG Thu Jun 29 06:54:01 2006 Return-Path: X-Original-To: freebsd-pf@freebsd.org Delivered-To: freebsd-pf@freebsd.org Received: from mx1.FreeBSD.org (mx1.freebsd.org [216.136.204.125]) by hub.freebsd.org (Postfix) with ESMTP id BF7AC16A4A0; Thu, 29 Jun 2006 06:54:01 +0000 (UTC) (envelope-from vapcom@mail.ru) Received: from f7.mail.ru (f7.mail.ru [194.67.57.37]) by mx1.FreeBSD.org (Postfix) with ESMTP id 5854D43D46; Thu, 29 Jun 2006 06:54:01 +0000 (GMT) (envelope-from vapcom@mail.ru) Received: from mail by f7.mail.ru with local id 1FvqPX-000NjB-00; Thu, 29 Jun 2006 10:53:59 +0400 Received: from [62.16.92.130] by koi.mail.ru with HTTP; Thu, 29 Jun 2006 10:53:59 +0400 From: Boris Polevoy To: Daniel Hartmeier Mime-Version: 1.0 X-Mailer: mPOP Web-Mail 2.19 X-Originating-IP: 192.168.1.7 via proxy [62.16.92.130] Date: Thu, 29 Jun 2006 10:53:59 +0400 In-Reply-To: <20060629052504.GA12614@insomnia.benzedrine.cx> Content-Type: text/plain; charset=koi8-r Content-Transfer-Encoding: 8bit Message-Id: Cc: mlaier@freebsd.org, pf@benzedrine.cx, freebsd-pf@freebsd.org Subject: Re[2]: anchors - weirdness X-BeenThere: freebsd-pf@freebsd.org X-Mailman-Version: 2.1.5 Precedence: list Reply-To: Boris Polevoy List-Id: "Technical discussion and general questions about packet filter \(pf\)" List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Thu, 29 Jun 2006 06:54:01 -0000 -----Original Message----- From: Daniel Hartmeier To: David Diggles Date: Thu, 29 Jun 2006 07:25:04 +0200 Subject: Re: anchors - weirdness > > There was a bug that caused anchors defined from sub-anchors with "load > anchor" statements to get defined directly in the root, and not relative > to the position of the anchor defining them. This was fixed in OpenBSD > just a couple of weeks ago with > > http://www.openbsd.org/cgi-bin/cvsweb/src/sys/net/pf_table.c.diff?r1=1.67&r2=1.68&f=h > http://www.openbsd.org/cgi-bin/cvsweb/src/sbin/pfctl/parse.y.diff?r1=1.497&r2=1.498&f=h > > This isn't in FreeBSD (or OpenBSD -stable) yet, but it probably makes > sense to pull it in. > I have use same pf_table.c patch under FreeBSD 6.0, 6.1 two months. It's work well. To Max Laier: please, patch FreeBSD's PF/pfctl. With best regards Boris Polevoy