Re: pf match ipv6 interface ID
Sonic <[email protected]> Mon, 29 Jun 2026 22:35:16 -0400
| Newsgroups | gmane.os.openbsd.misc |
|---|---|
| Message-ID | <CAP5+4qe2H_fHjG9qCz8m8eVaH2fPMLw3caT70DiF4zttA019AA@mail.gmail.com> |
On Mon, Jun 29, 2026 at 6:47 PM Jason Tubnor <[email protected]> wrote: > Does (network_if:0) not work here? No, it doesn't allow pass/block/etc. rules applied to hosts. Whereas with xxxx:xxxx:xxxx:xxxx:zzzz:zzzz:zzzz:zzzz a way to match on the "z" part, the IID, alone, without regard to the "x" part, the prefix, would allow for stable pf rules even when the ISP changes the prefix. Thanks, Chris