Re: pf weirdness with pfctl -f nonexistent.file

2005-11-10 Thread Tamas TEVESZ
On Fri, 11 Nov 2005, Daniel Hartmeier wrote: > I'm pretty sure your theory is correct. You can query the list of > interfaces with pfctl -vsI, which prints '(skip)' on those that are > currently being skipped. ah, yes, thank you. i did check, and yes, it's the skip flag that gets cleared. >

Re: pf weirdness with pfctl -f nonexistent.file

2005-11-10 Thread Daniel Hartmeier
I'm pretty sure your theory is correct. You can query the list of interfaces with pfctl -vsI, which prints '(skip)' on those that are currently being skipped. Reloading the ruleset does (and should) clear the 'set skip' set, as we agreed that there should be no (or as little as possible) state in