[Bug 292184] periodic/security/520.pfdenied - anchor name must not be empty
Date: Wed, 07 Jan 2026 15:27:28 UTC
https://bugs.freebsd.org/bugzilla/show_bug.cgi?id=292184
--- Comment #4 from Kristof Provost <kp@freebsd.org> ---
I suppose we can try this instead: (so $anchoropt is just the option, which we
don't add if the anchor is empty)
diff --git a/usr.sbin/periodic/etc/security/520.pfdenied
b/usr.sbin/periodic/etc/security/520.pfdenied
index d87dfa0ae64c..df04eb206f94 100755
--- a/usr.sbin/periodic/etc/security/520.pfdenied
+++ b/usr.sbin/periodic/etc/security/520.pfdenied
@@ -43,7 +43,11 @@ then
TMP=`mktemp -t security`
for _a in "" $(pfctl -a "blacklistd" -sA 2>/dev/null) $(pfctl -a
"blocklistd" -sA 2>/dev/null) ${security_status_pfdenied_additionalanchors}
do
- pfctl -a "${_a}" -sr -v -z 2>/dev/null | \
+ anchoropt=""
+ if [ -n "${_a}" ]; then
+ anchoropt="-a"
+ fi
+ pfctl ${anchoropt} "${_a}" -sr -v -z 2>/dev/null | \
nawk '{if (/^block/) {buf=$0; getline; gsub(" +"," ",$0); if
($5 > 0) print buf$0;} }' >> ${TMP}
done
if [ -s ${TMP} ]; then
--
You are receiving this mail because:
You are the assignee for the bug.