From a8205884497636535bdfcd776c613060ccf0ad09 Mon Sep 17 00:00:00 2001 From: henning Date: Thu, 7 Aug 2008 18:29:32 +0000 Subject: [PATCH] correctly copy the log interface spec when expanding an antispoof rule that covers loopback addresses. ok ryan problem report from Harald Dunkel --- sbin/pfctl/parse.y | 3 ++- 1 file changed, 2 insertions(+), 1 deletion(-) diff --git a/sbin/pfctl/parse.y b/sbin/pfctl/parse.y index 55c3a755373..c9ccec6f2c3 100644 --- a/sbin/pfctl/parse.y +++ b/sbin/pfctl/parse.y @@ -1,4 +1,4 @@ -/* $OpenBSD: parse.y,v 1.549 2008/07/03 16:09:34 deraadt Exp $ */ +/* $OpenBSD: parse.y,v 1.550 2008/08/07 18:29:32 henning Exp $ */ /* * Copyright (c) 2001 Markus Friedl. All rights reserved. @@ -1245,6 +1245,7 @@ antispoof : ANTISPOOF logquick antispoof_ifspc af antispoof_opts { r.action = PF_DROP; r.direction = PF_IN; r.log = $2.log; + r.logif = $2.logif; r.quick = $2.quick; r.af = $4; if (rule_label(&r, $5.label)) -- 2.20.1