From owner-freebsd-pf@FreeBSD.ORG Fri Nov 30 12:17:00 2012 Return-Path: Delivered-To: freebsd-pf@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [69.147.83.52]) by hub.freebsd.org (Postfix) with ESMTP id A934BBA5 for ; Fri, 30 Nov 2012 12:17:00 +0000 (UTC) (envelope-from 000.fbsd@quip.cz) Received: from elsa.codelab.cz (elsa.codelab.cz [94.124.105.4]) by mx1.freebsd.org (Postfix) with ESMTP id 4F88B8FC08 for ; Fri, 30 Nov 2012 12:17:00 +0000 (UTC) Received: from elsa.codelab.cz (localhost [127.0.0.1]) by elsa.codelab.cz (Postfix) with ESMTP id 08F4428427; Fri, 30 Nov 2012 13:16:53 +0100 (CET) Received: from [192.168.1.2] (unknown [89.177.49.69]) (using TLSv1 with cipher DHE-RSA-CAMELLIA256-SHA (256/256 bits)) (No client certificate requested) by elsa.codelab.cz (Postfix) with ESMTPSA id 3660E28422; Fri, 30 Nov 2012 13:16:52 +0100 (CET) Message-ID: <50B8A3B3.6000507@quip.cz> Date: Fri, 30 Nov 2012 13:16:51 +0100 From: Miroslav Lachman <000.fbsd@quip.cz> User-Agent: Mozilla/5.0 (Windows; U; Windows NT 5.0; en-US; rv:1.9.1.19) Gecko/20110420 Lightning/1.0b1 SeaMonkey/2.0.14 MIME-Version: 1.0 To: Laszlo Danielisz Subject: Re: pfctl -s rules References: <49BF4308335C496593D1D7C82391C805@yahoo.com> <21296179F7C744CE89529A0027FBE9DA@yahoo.com> In-Reply-To: <21296179F7C744CE89529A0027FBE9DA@yahoo.com> Content-Type: text/plain; charset=ISO-8859-1; format=flowed Content-Transfer-Encoding: 7bit Cc: freebsd-pf@freebsd.org X-BeenThere: freebsd-pf@freebsd.org X-Mailman-Version: 2.1.14 Precedence: list List-Id: "Technical discussion and general questions about packet filter \(pf\)" List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Fri, 30 Nov 2012 12:17:00 -0000 Laszlo Danielisz wrote: > Nothing is displayed > > ktulu# pfctl -nf /etc/pf.conf > ktulu# It is better to use verbose command (will show you parsed rules as well as some errors) pfctl -nvvf /etc/pf.conf If you see your rules with above command, but rules are not loaded at boot, then you have some error in /etc/rc.conf (you need at least pf_enable="YES") Manually try `service pf reload` or `service pf restart` Miroslav Lachman