Hi,

thanks for your answer.

On Thu, 11.12.2008 at 02:29:22 +0000, Stuart Henderson <s...@spacehopper.org> 
wrote:
> On 2008-12-10, Toni Mueller <openbsd-m...@oeko.net> wrote:
> > Example:
> >     pass on $ext_if all max-mss 1400
> you should use "scrub on ... max-mss 1400"

I have seen, and verified, that that works, but I hoped to apply such a
rule to only some of the packets (think different transport media
etc.pp.).

> the BNF section is wrong, there should be a separate 'scrub-rule'
> and the relevant options (max-mss, set-tos, no-df and some others)
> should be moved to something like 'scrubopt'.
> 
> any volunteers for a diff? :-) this (in src/share/man/man5/pf.conf.5)
> is plaintext, you don't even need mdoc.samples(7).

Would it be a big problem to adjust the code instead?


Kind regards,
--Toni++

Reply via email to