|Building The Network You Need With PF, The OpenBSD Packet Filter: BSDCan 2016, Ottawa, Canada, June 8th 2016|
'everything was upside down'
We inherited last matching rule wins from IPfilter, and note
block pass from 192.168.103/24
pass from 192.168.103/24 block
are *not* equivalent
$ sudo pfctl -vnf samples/example001
$ sudo pfctl -vnf samples/example002