tech-net archive

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index][Old Index]

Re: npf vs. pf



On Wed, 10 Dec 2014 14:49:56 +0100
Jean-Yves Migeon <jeanyves.migeon%free.fr@localhost> wrote:
> > I asked if npf would have a good shot at fixing this issue but no
> > one has replied to that question.  Anyone here have any thoughts on
> > that?
> 
> npfctl(8) can definitly do that -- see "npfctl table"

Yes, I have read the documentation.  I know what it claims to do.  My
question was about how well it delivers.

In any case I think I will have to stick with pf a bit longer, at least
until npf grows a -D option.  I use rc.conf to specify $int_if and
$ext_if but npf doesn't support that.  I checked the source and it
isn't just a lack of documentation.  Also, I don't see anything to
suggest that I can put comments into the table files.  That would be a
"nice to have."

-- 
D'Arcy J.M. Cain <darcy%NetBSD.org@localhost>
http://www.NetBSD.org/ IM:darcy%Vex.Net@localhost


Home | Main Index | Thread Index | Old Index