On Mon, Feb 03, 2003 at 01:23:20PM +0100, Ed White wrote:

> I got a kernel panic with this ruleset:
> pass out quick on dc0 route-to lo0 inet proto tcp from any to $HOST port 25 
                        ^^^^^^^^^^^^

It's probably the route-to lo0. I agree it shouldn't crash, and I'll fix
it if you can provide a ddb> trace. But what's the intention here?

pfctl should probably prevent route/reply/dup-to loopback interfaces. It
makes no sense to me.

Daniel

Reply via email to