PF Issue with BETA4

Max Laier max at love2party.net
Fri Sep 17 02:15:16 PDT 2004


On Friday 17 September 2004 05:00, Thomas T. Veldhouse wrote:
> It seems that, at least with the PF devices built into the kernel that
> an issue arises during shutdown.  As I was rebooting the server, I
> noticed that the disks were syncing and yet there was a huge amount of
> traffic on my router to the Internet.  Upon inspection, packets were
> still passing through the kernel and a large download was still going on
> through a kernel that should have long ago quite passing traffic!  In
> other words, it appears that the NAT function of PF does not shutdown as
> it should while the the OS is shutting down.  Traffic ceases almost
> immediately with IPFW and IPFILTER.

Hmmm? So you are saying that staying up as long as possible is an error? I 
don't quite see the point in shutting down early. If you still want to, you 
can script it somewhere. "echo block all | pfctl -Fa -f-"

-- 
/"\  Best regards,                      | mlaier at freebsd.org
\ /  Max Laier                          | ICQ #67774661
 X   http://pf4freebsd.love2party.net/  | mlaier at EFnet
/ \  ASCII Ribbon Campaign              | Against HTML Mail and News
-------------- next part --------------
A non-text attachment was scrubbed...
Name: not available
Type: application/pgp-signature
Size: 187 bytes
Desc: not available
Url : http://lists.freebsd.org/pipermail/freebsd-pf/attachments/20040917/e343a01e/attachment.bin


More information about the freebsd-pf mailing list