[Bug 196314] pf nested inline anchors does not work

bugzilla-noreply at freebsd.org bugzilla-noreply at freebsd.org
Thu Nov 10 07:57:28 UTC 2016


https://bugs.freebsd.org/bugzilla/show_bug.cgi?id=196314

--- Comment #4 from Martin Beran <martin.beran at kernun.cz> ---
(In reply to Kristof Provost from comment #3)

This pf.conf should block ping 127.0.0.1, but it does not:

anchor on ! vboxnet0 {
    anchor on ! vboxnet1 {
        block on lo0 proto icmp all
    }
}

If I move the "block" line out of the inner anchor, it starts to block packets.

-- 
You are receiving this mail because:
You are the assignee for the bug.


More information about the freebsd-pf mailing list