    Dangling states problem: pf consults its state table before the rule set (as it should). So even after adding a rule to block certain connections, the ones that have a corresponding entry in the state table will continue uninterrupted. AFAIK, pf does not have any built-in/native mechanism to...