Code:
# brute force blocking
pass quick proto { tcp, udp } from any to any port ssh keep state (max-src-conn 50, max-src-conn-rate 8/60, overload <bruteforce> flush global)
IN the above rule ipaddress are stored in the
bruteforce table.
If I stop pf i.e pfctl -d and than enable it pfctl -e will all the ipaddress stored in the bruteforce table be lost. As that is what happened.