On Wed, Nov 30, 2005 at 06:52:25AM -0600, Will Maier wrote: > On Tue, Nov 29, 2005 at 09:56:59PM -0600, Aaron P. Martinez wrote: > > > Aaron P. Martinez wrote: > [...] > > I realize i could just accept all udp packets from the NFS server or even > > just ports 2049, but the underlying question is, why isn't my "keep state" > > rule handling this. > > I don't use pf (or NFS), but UDP is a stateless protocol. I wouldn't > be surprised if pf couldn't keep track of its state...
It is supposed to work, except for FTP. Roland -- R.F.Smith (http://www.xs4all.nl/~rsmith/) Please send e-mail as plain text. public key: http://www.xs4all.nl/~rsmith/pubkey.txt
pgpqrdTn87PMP.pgp
Description: PGP signature