use "!received-on any" to absolutely ensure that we're not forwarding
authorhenning <henning@openbsd.org>
Sat, 19 Apr 2014 16:07:09 +0000 (16:07 +0000)
committerhenning <henning@openbsd.org>
Sat, 19 Apr 2014 16:07:09 +0000 (16:07 +0000)
commitd7cbed85b672de777da9856109a32df83340225d
tree2c3c78e1d7d521a70690566b2ed755d9d6be6310
parent31ba7e369349af0670b78f8def1160ef6ff5a12b
use "!received-on any" to absolutely ensure that we're not forwarding
carp, rpc or nfs traffic in the initial ruleset active during network
startup for a short time (or a much longer time if /etc/pf.conf is
screwed up). ok phessler
etc/rc