Expiring Table Entries With pfctl

overload table contents becomes less useful over time (addresses change owners, DHCP leases expire, etc)

In OpenBSD 4.1 and newer, pfctl can expire table entries:

# pfctl -t bruteforce -T expire 86400