Max Laier
Tue Sep 6 07:50:47 PDT 2005

On Tuesday 06 September 2005 13:52, Szukács István wrote:
> The problem is that inside the jail the root has access to pf(the
> outside system's pf), and can read/write the ruleset.
> How can i protect it?

You can use devfs rulesets to hide /dev/pf from the jail's devfs.  See 
devfs(8) for more details.

