pf is not loading my ruleset from /etc/pf.conf on startup. I have to manually execute
[cmd=]pfctl -F all -f /etc/pf.conf[/cmd]
at each startup to enable my nat rules for the servers behind my firewall.
Here's my rc.conf, it has the relevant pf_enable and pf_rules lines in it.
Any ideas? My system is 8.1-RELEASE-p0.
[cmd=]pfctl -F all -f /etc/pf.conf[/cmd]
at each startup to enable my nat rules for the servers behind my firewall.
Here's my rc.conf, it has the relevant pf_enable and pf_rules lines in it.
Code:
# Enable gateway internet
gateway_enable="YES"
hostname="greg-kennedy.com"
# set up internet devices
ifconfig_rl0="inet 192.168.1.1 netmask 0xffffff00"
ifconfig_sis0="DHCP"
# telnet, finger, etc
inetd_enable="NO"
keymap="us.dvorak"
sshd_enable="YES"
dhcpd_enable="YES"
dhcpd_ifaces="rl0"
ntpd_enable="YES"
ntpd_flags="-g"
apache_enable="YES"
opendd_enable="YES"
mysql_enable="YES"
svnserve_enable="YES"
svnserve_flags="-d --listen-port=3690 --listen-host=0.0.0.0"
svnserve_data="/usr/local/svn/data"
# firewall
[B]pf_enable="YES"
pf_rules="/etc/pf.conf"
pf_flags=""
pflog_enable="YES"[/B]
miniupnpd_enable="YES"
syslogd_flags="-s -s" # Flags to syslogd (if enabled).
rpcbind_enable="YES"
nfs_server_enable="YES"
mountd_flags="-r"
Any ideas? My system is 8.1-RELEASE-p0.