I just finished upgrading a 3.2 -stable box to yesterday's snapshot to try out the new IP ID feature (where is that documented?). Anyhoo, there was one rule in the pf.conf that was fine in 3.2, but the snapshot is choking on:
pass in on $ext_if proto tcp from $other_net to ($int_if)/24 flags S/SA modulate state I assumed it was due to the expansion "($int_if)/24", so I tried with a single IP, and that fixed it. What is the new syntax like for cidr expansion on an interface? I can't find any examples in the manpage. TIA, J.
