Subject: Re: pf doesn't start normally anymore
To: None <tech-security@NetBSD.org>
From: Peter Postma <peter@pointless.nl>
List: tech-security
Date: 08/12/2005 03:53:05
On Fri, Aug 12, 2005 at 02:43:06AM +0200, Peter Postma wrote:
> On Fri, Aug 12, 2005 at 09:25:55AM +0900, YAMAMOTO Takashi wrote:
> > > Yes. I changed my mind now about the possible security problem and
> > > implemented the "openbsd solution" (see pf_default attachment). It simply
> > > adds some rules to block everything and some "pass" rules to not hinder
> > > the network configuration.
> > > 
> > > If anyone has ideas for improvements, please let me know, otherwise I'll
> > > commit this in a few days.
> > 
> > are awk and grep (ie. /usr) available at this point?
> > 
> 
> Yes.
> 

Eh actually no, matthew green just pointed out that /usr might be on nfs
and when that's the case /usr is not available.  Seems that I've to create
a script that doesn't use awk and grep.

-- 
Peter Postma