On Tue, Mar 20, 2007 at 03:29:08PM -0700, Alexander Lind wrote:
> Hello misc.
>
> Can anyone recommend a pf propagation script, intended to be used to
> spread changes from one carp:ed openbsd firewall to another?
>
> I found one bash script which seems to do a decent job here:
> http://archives.neohapsis.com/archives/openbsd/2006-11/1134.html
>
> But it requires bash and supports only two firewalls.
>
> Also does anyone know if there are any plans to make this pf.conf
> propagation a feature in openbsd itself?
This is trivially scripted (the posted scp solution is perfectly
sensible). But do take a look at carp(4), pfsync(4), and so on.
joachim