From owner-freebsd-pf@FreeBSD.ORG Fri Apr 13 07:35:31 2012 Return-Path: Delivered-To: freebsd-pf@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [69.147.83.52]) by hub.freebsd.org (Postfix) with ESMTP id 410D71065670 for ; Fri, 13 Apr 2012 07:35:31 +0000 (UTC) (envelope-from ml@my.gd) Received: from mail-vx0-f182.google.com (mail-vx0-f182.google.com [209.85.220.182]) by mx1.freebsd.org (Postfix) with ESMTP id E69F08FC0C for ; Fri, 13 Apr 2012 07:35:30 +0000 (UTC) Received: by vcmm1 with SMTP id m1so2642051vcm.13 for ; Fri, 13 Apr 2012 00:35:30 -0700 (PDT) X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=google.com; s=20120113; h=mime-version:in-reply-to:references:date:message-id:subject:from:to :cc:content-type:content-transfer-encoding:x-gm-message-state; bh=RnCvQrARqMzwZ1O9nm4GNBrhLJ3HeJHTPOSZZ2P1ulo=; b=ap1SvXCWRmyrMAf2bMTtpLvFFcN5ozWeZDuH5aOIkoNm1U081T/gc8vlUsPfNsTHW1 OQe2ELyNVS2I1r8wqIUqWDvEwJjGD5gvtX2JyZCCe8pLynC/51t5qp3CmlxhTlSvknLh zLJDeTAoMxwfKx9xQfI+1XQDs0tR24BWvT7Bgfo7Al/1IHjmhtJsK0Zk/5ow04gAw5bO IGJ4xCDI6KFLKmxMxDmSKQk1oD+s6o2SEEBV70WT8M3RcJwDzY9pxS3VFSj5NiSWZ4e8 4gMursPYZxIGJMtGUbYiLnC0CtoDgJcRZJnjXnSzCcXndBeLUJ0FIFJAOC9cmYnuRe2Q paOQ== MIME-Version: 1.0 Received: by 10.52.22.148 with SMTP id d20mr237079vdf.102.1334302529990; Fri, 13 Apr 2012 00:35:29 -0700 (PDT) Received: by 10.52.26.42 with HTTP; Fri, 13 Apr 2012 00:35:29 -0700 (PDT) In-Reply-To: <20120413071414.GA20180@insomnia.benzedrine.cx> References: <20120413030455.GA40140@DataIX.net> <20120413071414.GA20180@insomnia.benzedrine.cx> Date: Fri, 13 Apr 2012 09:35:29 +0200 Message-ID: From: Damien Fleuriot To: Daniel Hartmeier Content-Type: text/plain; charset=ISO-8859-1 Content-Transfer-Encoding: quoted-printable X-Gm-Message-State: ALoCoQmtpeoXCMHNdStalwdp+FzKZ+3rTYEjeq1JmX0lv/V8++DjsGcmaBis5GyfKhuM3wSFziCD Cc: freebsd-pf@freebsd.org Subject: Re: PF - pf not loading non-persist tables from main ruleset on 8.3-PRERELEASE X-BeenThere: freebsd-pf@freebsd.org X-Mailman-Version: 2.1.5 Precedence: list List-Id: "Technical discussion and general questions about packet filter \(pf\)" List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Fri, 13 Apr 2012 07:35:31 -0000 On 13 April 2012 09:14, Daniel Hartmeier wrote: > But you're not referencing the tables in your rules! > > From pf.conf(5) > > =A0 =A0 persist =A0The persist flag forces the kernel to keep the table e= ven when > =A0 =A0 =A0 =A0 =A0 =A0 =A0no rules refer to it. =A0If the flag is not se= t, the kernel will > =A0 =A0 =A0 =A0 =A0 =A0 =A0automatically remove the table when the last r= ule referring to > =A0 =A0 =A0 =A0 =A0 =A0 =A0it is flushed. > > Daniel Oh god, could that be it... Let me try with a rule referencing the tables... -.-