svn commit: r195026 - head/etc/rc.d
des at des.no
Tue Jun 30 15:07:50 UTC 2009
Robert Watson <rwatson at FreeBSD.org> writes:
> This sounds right to me, FWIW -- being able to fully configure the
> policy before network traffic starts is definitely right in the
> abstract, it's just a question of getting there...
One option would be to start pf with a pre-cooked rule set that allows
only DHCP and nd6 / rtsol or similar, then load the user-provided rule
set once all interfaces are up.
Dag-Erling Smørgrav - des at des.no
More information about the svn-src-head