Project

General

Profile

Actions

Todo #16653

closed

Add label to PF ``antispoof`` rules

Added by Jim Pingle 23 days ago. Updated 3 days ago.

Status:
Resolved
Priority:
Low
Assignee:
Category:
Rules / NAT
Target version:
Start date:
Due date:
% Done:

100%

Estimated time:
Plus Target Version:
26.03
Release Notes:
Default

Description

The automatic antispoof rules are set to log but do not have a label, so any log entries created as a consequence of these rules do not have a description, which can be confusing when viewing the logs.

The antispoof directive seems to take a label OK in the ruleset and the rules PF creates from that directive appear to inherit the label properly, so it should be fairly straightforward to add.

Actions #1

Updated by Marcos M 5 days ago

  • Assignee set to Marcos M
Actions #2

Updated by Marcos M 5 days ago

  • Status changed from New to Feedback
  • % Done changed from 0 to 100

Added with ed0d30330652ea6ab4d27042b94d5ad26428fd80.

This includes missing lables for antispoof, CARP, Captive Portal, and ICMPv6 rules.

Actions #3

Updated by Jim Pingle 3 days ago

  • Status changed from Feedback to Resolved

Looks good, all the rules in question have labels in the ruleset and PF shows them when using pfctl and so on.

Actions

Also available in: Atom PDF