Hi, On Thu, Sep 27, 2007 at 05:07:11PM +0200, Max Laier wrote: > From my experience and feedback from various sources the need > to look at old pflog dumps is rather small (if not non-existing).
I see one possible operational issue here - upgrading your OS (-> new pflog header) but not upgrading applications that use libpcap at the same time, like "wireshark from the ports". Would the pflog change then break the applications? gert -- USENET is *not* the non-clickable part of WWW! //www.muc.de/~gert/ Gert Doering - Munich, Germany [EMAIL PROTECTED] fax: +49-89-35655025 [EMAIL PROTECTED] - This is the tcpdump-workers list. Visit https://cod.sandelman.ca/ to unsubscribe.