/etc/pf.conf missing

Polytropon freebsd at edvax.de
Mon Feb 9 17:38:58 UTC 2015


On Mon, 09 Feb 2015 12:12:02 -0500, Lowell Gilbert wrote:
> Chris Stankevitz <chrisstankevitz at gmail.com> writes:
> 
> > Q: Should I be alarmed?
> >
> > Handbook section 30.3.1 says "The default ruleset is already created
> > and is named /etc/pf.conf" but that file does not exist on my hard
> > drive.
> 
> The Handbook (or at least the obvious interpretation of what it says;
> the awkward phrasing may mean that it was mis-edited at some point) is
> incorrect. 
> 
> I'm not sure that a one-size-fits-all default ruleset (of the sort that
> exists for ipfw) is practical for pf.

There is an example file at /usr/share/examples/pf/pf.conf
as well as in "man 5 pf.conf", which reads in section FILES:

     /etc/pf.conf            Default location of the ruleset file.

This leaves the _possible_ interpretation that the file is
supplied with the OS, but the _reasonable_ interpratation is
that the file should be located like this per default _when_
it is present (and to be present, supplied by the administrator).

So it doesn't look that this file is already created, unlike,
for comparison, /etc/ps.os.




-- 
Polytropon
Magdeburg, Germany
Happy FreeBSD user since 4.0
Andra moi ennepe, Mousa, ...


More information about the freebsd-questions mailing list