icy-garage-31078
08/23/2022, 2:22 PMwide-mechanic-33041
08/23/2022, 2:23 PMicy-garage-31078
08/23/2022, 2:24 PMwide-mechanic-33041
08/23/2022, 2:26 PMicy-garage-31078
08/23/2022, 2:32 PMwide-mechanic-33041
08/23/2022, 2:33 PMquick-keyboard-83126
08/23/2022, 2:42 PMsudo pfutil -s ...
-- No guarantees, I'm not particularly familiar w/ pf
(you'll want to look at man pfutil
)icy-garage-31078
08/23/2022, 2:57 PMpfutil
, nor am I finding any manual entries for it (google or local). Is there a more formal name?quick-keyboard-83126
08/23/2022, 2:58 PMicy-garage-31078
08/23/2022, 2:58 PMquick-keyboard-83126
08/23/2022, 2:58 PMpfctl
, sorry, brainfart*util
, but this is a bsd app, and thus t's *ctl
)icy-garage-31078
08/23/2022, 3:03 PMquick-keyboard-83126
08/23/2022, 3:05 PMicy-garage-31078
08/24/2022, 12:37 PM<https://apple.stackexchange.com/questions/312400/pfctl-howto-add-an-anchor-and-make-it-active-load-it>
, I was able to see all the rules the VPN is putting in place compared to the without it, and I can see rules like block drop out log quick on en8 inet proto udp from [ip] to any port = 53 ! tagged cisco_anyconnect_vpn_pass
, which is blocking basic DNS requests to even my firewall. I've not had a chance to compare it to my personal computer yet, but good to have some direction.powerful-elephant-25838
09/22/2022, 8:04 AM