https://bugs.freebsd.org/bugzilla/show_bug.cgi?id=292184

--- Comment #4 from Kristof Provost <[email protected]> ---
I suppose we can try this instead: (so $anchoropt is just the option, which we
don't add if the anchor is empty)

diff --git a/usr.sbin/periodic/etc/security/520.pfdenied
b/usr.sbin/periodic/etc/security/520.pfdenied
index d87dfa0ae64c..df04eb206f94 100755
--- a/usr.sbin/periodic/etc/security/520.pfdenied
+++ b/usr.sbin/periodic/etc/security/520.pfdenied
@@ -43,7 +43,11 @@ then
        TMP=`mktemp -t security`
        for _a in "" $(pfctl -a "blacklistd" -sA 2>/dev/null) $(pfctl -a
"blocklistd" -sA 2>/dev/null) ${security_status_pfdenied_additionalanchors}
        do
-               pfctl -a "${_a}" -sr -v -z 2>/dev/null | \
+               anchoropt=""
+               if [ -n "${_a}" ]; then
+                       anchoropt="-a"
+               fi
+               pfctl ${anchoropt} "${_a}" -sr -v -z 2>/dev/null | \
                nawk '{if (/^block/) {buf=$0; getline; gsub(" +"," ",$0); if
($5 > 0) print buf$0;} }' >> ${TMP}
        done
        if [ -s ${TMP} ]; then

-- 
You are receiving this mail because:
You are the assignee for the bug.

Reply via email to