UDP weirdness

Jeremy Chadwick koitsu at freebsd.org
Wed May 7 22:44:09 UTC 2008


On Wed, May 07, 2008 at 06:06:38PM -0400, Ansar Mohammed wrote:
> So I am using FreeBSD 7 and it doesn't work either way with "keep state"
> there or not. The only catch here is that everything is running on VMWare,
> although that should not matter. I have been using pf for about 2 years now.
> I feel this may be a bit of a bug. 
> 
> I even set the state-policy to floating (which I believe is default) and
> still I need the second rule.

You don't need "keep state" or "keep state flags S/SA" on any of your
rules because you're using RELENG_7.

Regarding the need for the "pass out" line, Max has explained the
reason/need for it in another Email.  It's not a bug.

-- 
| Jeremy Chadwick                                jdc at parodius.com |
| Parodius Networking                       http://www.parodius.com/ |
| UNIX Systems Administrator                  Mountain View, CA, USA |
| Making life hard for others since 1977.              PGP: 4BD6C0CB |



More information about the freebsd-pf mailing list