etc/pf.conf:
type (file, link)
permissions (0600, 0755)
Change the permissons for the symbolic link from 0755 to 0600 (same permissions like on your other pf.conf.xxx files).
My question: Is a symbolic link really insecure?
Only with wrong permissions. Tas.

