Re: pflog0 showing traffic for rule with no logging requested

2015-03-18 Thread Henning Brauer
* Martin Gignac [2015-02-24 14:46]: > 08:24:27.831052 rule 1/(match) pass in on vlan308: 10.120.108.2 > 224.0.0.1: > igmp query [tos 0xc0] [ttl 1] > 08:26:36.645149 rule 1/(match) pass in on vlan308: 10.120.108.2 > 224.0.0.1: > igmp query [tos 0xc0] [ttl 1] > > Two things which I don't understand

pflog0 showing traffic for rule with no logging requested

2015-02-24 Thread Martin Gignac
Hi, With a fresh install of a 5.7 snapshot on amd64 (OpenBSD 5.7-beta (GENERIC) #805: Sun Feb 22 03:09:53 MST 2015) I have noticed the following: With this pf ruleset: $ sudo pfctl -s r block drop all pass all flags S/SA block return in on ! lo0 proto tcp from any to any port 6000:6010 block dro