Date: Tue, 23 Mar 2010 21:38:55 GMT From: Bruce Cran <bruce@cran.org.uk> To: freebsd-gnats-submit@FreeBSD.org Subject: docs/144986: [pf] pf.conf example should show allowing icmp through firewall Message-ID: <201003232138.o2NLctD7044496@www.freebsd.org> Resent-Message-ID: <201003232140.o2NLe38m040043@freefall.freebsd.org>
next in thread | raw e-mail | index | archive | help
>Number: 144986 >Category: docs >Synopsis: [pf] pf.conf example should show allowing icmp through firewall >Confidential: no >Severity: non-critical >Priority: low >Responsible: freebsd-doc >State: open >Quarter: >Keywords: >Date-Required: >Class: doc-bug >Submitter-Id: current-users >Arrival-Date: Tue Mar 23 21:40:03 UTC 2010 >Closed-Date: >Last-Modified: >Originator: Bruce Cran >Release: 9.0-CURRENT >Organization: >Environment: FreeBSD core.draftnet 9.0-CURRENT FreeBSD 9.0-CURRENT #3 r205344M: Sat Mar 20 21:31:35 GMT 2010 brucec@core.draftnet:/usr/obj/usr/src/head/sys/CORE amd64 >Description: The pf example in /usr/share/example/pf/pf.conf shows allowing ssh through the firewall, but it doesn't have any icmp examples, so users may not realise that icmp should normally be allowed. >How-To-Repeat: >Fix: Add the line: #pass in on $ext_if proto icmp to ($ext_if) >Release-Note: >Audit-Trail: >Unformatted:
Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?201003232138.o2NLctD7044496>