Thursday, April 07, 2022

Re: pf documentation

On Thu, Apr 07, 2022 at 05:18:57AM -0400, Brodey Dover wrote:
> To be honest, I just used the handbook/FAQ.
>
> https://www.openbsd.org/faq/pf/example1.html
>
> Note that some grammar and syntax from Google search results will not work in newer versions of pf.

Yes. There are a lot of FreeBSD based example configs out there. The FreeBSD PF version
does not have the NAT rewrite (old: nat on/rdr on if I remember correctly) or the
new queuing but is stuck with ALTQ. There are also some differences with respect
to interface groups, and there could be other things I have simply forgotten about
that happened during the 13 years of parallel development since OpenBSD 4.5.

In all the revisions of The Book of PF we tried to cater to all versions,
which grew incrementally more painful over time. In the more recent tutorial
sessions I have moved to concentrating on the modern versions (OpenBSD) and
only mention in passing that FreeBSD will be different.

All the best,
Peter

--
Peter N. M. Hansteen, member of the first RFC 1149 implementation team
http://bsdly.blogspot.com/ http://www.bsdly.net/ http://www.nuug.no/
"Remember to set the evil bit on all malicious network traffic"
delilah spamd[29949]: 85.152.224.147: disconnected after 42673 seconds.

No comments:

Post a Comment