* J.C. Roberts <[email protected]> [2010-05-13 00:57]:
> NOTE: At present, I don't understand how pf reacts when interface
> groups are changed (interfaces added or deleted).

it doesn't.
it doesn't have to.
that stuff happens elsewhere :) the joys of proper design.

if you have an "on egress" rule, it will apply to any interface in the
egress group at the time the packet in question is evaluated by pf.

-- 
Henning Brauer, [email protected], [email protected]
BS Web Services, http://bsws.de
Full-Service ISP - Secure Hosting, Mail and DNS Services
Dedicated Servers, Rootservers, Application Hosting

Reply via email to