kern/134996: Anchor tables not included when pfctl is run with -o
lf at tns.cz
lf at tns.cz
Wed May 27 15:30:03 UTC 2009
>Number: 134996
>Category: kern
>Synopsis: Anchor tables not included when pfctl is run with -o
>Confidential: no
>Severity: serious
>Priority: medium
>Responsible: freebsd-bugs
>State: open
>Quarter:
>Keywords:
>Date-Required:
>Class: sw-bug
>Submitter-Id: current-users
>Arrival-Date: Wed May 27 15:30:01 UTC 2009
>Closed-Date:
>Last-Modified:
>Originator: Libor Forst
>Release: FreeBSD 7.1-RELEASE-p4 amd64
>Organization:
Trusted Network Solutions, Prague, Czech Republic
>Environment:
System: FreeBSD bns.tns.cz 7.1-RELEASE-p4 FreeBSD 7.1-RELEASE-p4 #0: Fri Apr 10 13:25:53 CEST 2009 root at builder764.pha.tns.cz:/usr/obj/usr/src/sys/KERNUN.amd64 amd64
>Description:
If the /etc/pf.conf file contains anchors (like
'anchor "/anchor/*" all no state') and the pfctl
command is invoked with '-o basic', the resulting
rules include references to tables that are not
included. Without optimisation, everything is OK.
>How-To-Repeat:
>Fix:
>Release-Note:
>Audit-Trail:
>Unformatted:
More information about the freebsd-bugs
mailing list