On 01/01/2006 04:32:46 AM, Cédric Berger wrote:
Hmm, that't bad that there is no way to clear address stats without flushing the table. Actually, there is a function in the kernel and pfctl library (pfr_clr_astats) - We just forgot to implement it in the pfctl tool. If nobody beats me, I'll look into doing that, as it is probably a very short patch.
Ok. So I went and read the man page. What's the difference between what you're talking about here and "-T zero"?
/* clear two address */ # pfctl -t bruteforce -T? 1.2.3.4 5.6.7.8
"-T zero" won't do individual addresses. That would be nice. Karl <[EMAIL PROTECTED]> Free Software: "You don't pay back, you pay forward." -- Robert A. Heinlein