Friday, May 29, 2020

Re: Restore pf tables metadata after a reboot

-----BEGIN PGP SIGNATURE-----
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=ZTht
-----END PGP SIGNATURE-----
> 29. mai 2020 kl. 19:23 skrev Walter Alejandro Iglesias <wai@roquesor.com>:

> Could you summarize here which part of these articles of yours answer my
> original question, please?
>
> For example, this list you share (linked in your article):
>
> https://home.nuug.no/~peter/pop3gropers_full.txt
>
> It would be great to be able to do the following before and after a
> reboot respectivelly:
>
> # pfctl -t smtp -vT show > file # (notice the verbose option)
> # pfctl -t smtp -T replace -f file
>
> But we know that doesn't work.

True, pfctl does not have the ability to parse back that metadata.

It is a possibly desirable feature, but I an not aware whether any of the currently capable developers are considering putting in the work to implement it.

All the best,



Peter N. M. Hansteen, member of the first RFC 1149 implementation team
http://bsdly.blogspot.com/ http://www.bsdly.net/ http://www.nuug.no/
"Remember to set the evil bit on all malicious network traffic"
delilah spamd[29949]: 85.152.224.147: disconnected after 42673 seconds.

No comments:

Post a Comment