On Sat, Jun 13, 2026, at 5:02 PM, Noth wrote:
> antispoof shouldn't be applied to local interfaces, only egress.
>

Negative, regarding egress only. Antispoof is a simple helper that expands to 
two rules that make sense for external or internal interfaces. The PF User's 
Guide router example does exactly that:

https://www.openbsd.org/faq/pf/example1.html#pf

Agreed it is likely superfluous for lo0.

Brian Conway

Reply via email to