docs/81540: Pf bug in FreeBSD 5.3 errata page its wrong

Victor Balada Diaz victor at
Fri May 27 02:20:02 UTC 2005

>Number:         81540
>Category:       docs
>Synopsis:       Pf bug in FreeBSD 5.3 errata page its wrong
>Confidential:   no
>Severity:       serious
>Priority:       medium
>Responsible:    freebsd-doc
>State:          open
>Class:          doc-bug
>Submitter-Id:   current-users
>Arrival-Date:   Fri May 27 02:20:01 GMT 2005
>Originator:     Victor Balada Diaz
>Release:        FreeBSD 5.3-RELEASE-p15 i386
System: FreeBSD 5.3-RELEASE-p15 FreeBSD 5.3-RELEASE-p15 #0: Thu May 26 21:13:13 CEST 2005 victor at i386

	In the errata page of FreeBSD 5.3 release its documented a pf bug:

	(31 Oct 2004) When the user/group rule clauses in pf(4) and ipfw(4)
	are used, the loader tunable debug.mpsafenet must be set to 0 (this
	is 1 by default). For example, the following rules are affected:

	the problem is that you can panic the machine even with mpsafenet
	disabled when you're using the user clause.

	Put in the errata page something like "Using the user/group clauses
	in pf can panic the system, so don't use it."



More information about the freebsd-doc mailing list