> Sent: Tuesday, December 30, 2014 at 10:08 PM
> From: "Christos Zoulas" <[email protected]>
> To: [email protected]
> Subject: Re: Setting a rule for NPF
>
[...]
> >procedure "log" {
> >     log: npflog0
> >}
> >
> >group (default) {
> >
> >pass proto icmp apply "log" 
[...]
> I think that should work.

I ran

npf_ext_log
npf_ext_normalise
ifconfig npflog0 create

But when I run

npfctl reload

it gives an error on the rule inside the group:

syntax error near 'apply'

The syntax seems correct, in all the example the name of the procedure is 
between double quotes.
Should I run anything else before? (Notice that I never used npf on this 
machine and the output of "npfctl show" is "Filtering: inactive" and 
"Configuration: empty")

Rocky

Reply via email to