Use "ipv6-icmp" instead of "icmp6" to allow loading these rules again.

Patch supplied by Daniel Horecki in PR bin/36874.
This commit is contained in:
tron 2007-09-02 15:28:43 +00:00
parent 2c096f9eae
commit 07347616e8

View File

@ -1,4 +1,4 @@
# $NetBSD: pf.boot.conf,v 1.2 2006/01/10 20:53:24 reed Exp $
# $NetBSD: pf.boot.conf,v 1.3 2007/09/02 15:28:43 tron Exp $
#
# /etc/defaults/pf.boot.conf --
# initial configuration for pf(4)
@ -24,7 +24,7 @@ pass out proto { tcp, udp } from any to any port 53 keep state
pass out inet proto icmp all icmp-type echoreq keep state
# Allow IPv6 router/neighbor solicitation and advertisement.
pass out inet6 proto icmp6 all icmp6-type neighbrsol
pass in inet6 proto icmp6 all icmp6-type neighbradv
pass out inet6 proto icmp6 all icmp6-type routersol
pass in inet6 proto icmp6 all icmp6-type routeradv
pass out inet6 proto ipv6-icmp all icmp6-type neighbrsol
pass in inet6 proto ipv6-icmp all icmp6-type neighbradv
pass out inet6 proto ipv6-icmp all icmp6-type routersol
pass in inet6 proto ipv6-icmp all icmp6-type routeradv