aboutsummaryrefslogtreecommitdiffstats
path: root/roles/security/files/600.clean-pf
diff options
context:
space:
mode:
Diffstat (limited to 'roles/security/files/600.clean-pf')
-rw-r--r--roles/security/files/600.clean-pf28
1 files changed, 28 insertions, 0 deletions
diff --git a/roles/security/files/600.clean-pf b/roles/security/files/600.clean-pf
new file mode 100644
index 0000000..d7ab0e6
--- /dev/null
+++ b/roles/security/files/600.clean-pf
@@ -0,0 +1,28 @@
+#!/bin/sh
+#
+# Clean up PF tables ...
+#
+
+if [ -r /etc/defaults/periodic.conf ]
+then
+ . /etc/defaults/periodic.conf
+ source_periodic_confs
+fi
+
+case "$daily_clean_pf_enable" in
+ [Yy][Ee][Ss])
+ echo ""
+ echo "PF tables cleanup:"
+ : ${daily_clean_pf_expire:=86400}
+ for table in $daily_clean_pf_tables; do
+ echo "Cleanup table $table ..."
+ pfctl -t $table -T expire $daily_clean_pf_expire
+ rc=$?
+ done
+ ;;
+ *)
+ rc=0
+ ;;
+esac
+
+exit $rc