| Commit message (Expand) | Author | Age | Files | Lines |
* | Commit pf version 3.5 and link additional files to the kernel build. | Max Laier | 2004-06-16 | 1 | -0/+14 |
* | Prepare for pf 3.5 import: | Max Laier | 2004-06-16 | 1 | -0/+2 |
* | o connect(2): if there is no a route to the destination | Maxim Konovalov | 2004-06-16 | 1 | -3/+1 |
* | Fix build for IPSEC && !INET6 | Bruce M Simpson | 2004-06-16 | 2 | -6/+12 |
* | Reverse a patch which has no effect on -CURRENT and should probably be | Bruce M Simpson | 2004-06-16 | 1 | -7/+1 |
* | In ip_forward(), when calculating the MTU in effect for an IPSEC transport | Bruce M Simpson | 2004-06-16 | 1 | -0/+2 |
* | In ip_forward(), set m->m_pkthdr.len correctly such that the mbuf chain | Bruce M Simpson | 2004-06-16 | 1 | -0/+1 |
* | Disconnect a temporarily-connected UDP socket in out-of-mbufs case. This | Bruce M Simpson | 2004-06-16 | 1 | -1/+7 |
* | Convert GIANT_REQUIRED to NET_ASSERT_GIANT for socket access. | Robert Watson | 2004-06-16 | 1 | -1/+1 |
* | Grab the socket buffer send or receive mutex when performing a | Robert Watson | 2004-06-15 | 2 | -2/+8 |
* | The socket field so_state is used to hold a variety of socket related | Robert Watson | 2004-06-14 | 4 | -15/+15 |
* | Link ALTQ to the build and break with ABI for struct ifnet. Please recompile | Max Laier | 2004-06-13 | 2 | -0/+13 |
* | Add a new driver to support IP over firewire. This driver is intended to | Doug Rabson | 2004-06-13 | 1 | -1/+2 |
* | Socket MAC labels so_label and so_peerlabel are now protected by | Robert Watson | 2004-06-13 | 5 | -1/+12 |
* | Extend coverage of SOCK_LOCK(so) to include so_count, the socket | Robert Watson | 2004-06-12 | 3 | -4/+7 |
* | Modify ip fw so that whenever UID or GID constraints exist in a | Christian S.J. Peron | 2004-06-11 | 1 | -30/+77 |
* | Remove unneeded Giant acquisition in divert_packet(), which is | Robert Watson | 2004-06-11 | 1 | -15/+0 |
* | Lock down parallel router_info list for tracking multicast IGMP | Robert Watson | 2004-06-11 | 1 | -1/+27 |
* | init_tables() must be run after sys/net/route.c:route_init(). | Ruslan Ermilov | 2004-06-10 | 1 | -1/+4 |
* | Introduce a new feature to IPFW2: lookup tables. These are useful | Ruslan Ermilov | 2004-06-09 | 4 | -1/+354 |
* | do not send icmp response if the original packet is encrypted. | Hajimu UMEMOTO | 2004-06-07 | 1 | -0/+3 |
* | Move the locking of the pcb into raw_output(). Organize code so | Bosko Milekic | 2004-06-03 | 1 | -10/+14 |
* | add missing #include <sys/module.h> | Poul-Henning Kamp | 2004-05-30 | 3 | -0/+3 |
* | Add some missing <sys/module.h> includes which are masked by the | Poul-Henning Kamp | 2004-05-30 | 1 | -0/+1 |
* | Add a super-user check to ipfw_ctl() to make sure that the calling | Christian S.J. Peron | 2004-05-25 | 1 | -0/+4 |
* | When checking for possible port theft, skip over a TCP inpcb | Yaroslav Tykhiy | 2004-05-20 | 1 | -7/+3 |
* | o Calculate a number of bytes to copy (cnt) correctly: | Maxim Konovalov | 2004-05-11 | 1 | -1/+1 |
* | o IFNAMSIZ does include the trailing \0. | Maxim Konovalov | 2004-05-07 | 1 | -1/+1 |
* | Provide the sysctl net.inet.ip.process_options to control the processing | Andre Oppermann | 2004-05-06 | 3 | -2/+24 |
* | Switch to using the inpcb MAC label instead of socket MAC label when | Robert Watson | 2004-05-04 | 6 | -8/+20 |
* | Assert inpcb lock in udp_append(). | Robert Watson | 2004-05-04 | 1 | -0/+2 |
* | Assert the inpcb lock on 'last' in udp_append(), since it's always | Robert Watson | 2004-05-04 | 1 | -0/+2 |
* | o Fix misindentation in the previous commit. | Maxim Konovalov | 2004-05-03 | 1 | -8/+7 |
* | Back out a change that slipped into the previous commit for which other | Andre Oppermann | 2004-05-03 | 1 | -10/+2 |
* | Optimize IP fastforwarding some more: | Andre Oppermann | 2004-05-03 | 1 | -95/+114 |
* | Rename m_claim_next_hop() to m_claim_next(), as suggested by Max Laier. | Darren Reed | 2004-05-02 | 4 | -4/+4 |
* | oops, I forgot this file in a prior commit (change was still sitting here, | Darren Reed | 2004-05-02 | 2 | -2/+2 |
* | Rename ip_claim_next_hop() to m_claim_next_hop(), give it an extra arg | Darren Reed | 2004-05-02 | 3 | -18/+2 |
* | Give jail(8) the feature to allow raw sockets from within a | Bosko Milekic | 2004-04-26 | 1 | -2/+31 |
* | Tighten up reset handling in order to make reset attacks as difficult as | Mike Silbersack | 2004-04-26 | 3 | -0/+21 |
* | Another small set of changes to reduce diffs with the new arp code. | Luigi Rizzo | 2004-04-25 | 1 | -31/+18 |
* | remove a stale comment on the behaviour of arpresolve | Luigi Rizzo | 2004-04-25 | 1 | -10/+0 |
* | Start the arp timer at init time. | Luigi Rizzo | 2004-04-25 | 1 | -10/+1 |
* | This commit does two things: | Luigi Rizzo | 2004-04-25 | 1 | -7/+28 |
* | Wrap two long lines in the previous commit. | Mike Silbersack | 2004-04-23 | 1 | -2/+4 |
* | Correct an edge case in tcp_mss() where the cached path MTU | Andre Oppermann | 2004-04-23 | 2 | -4/+4 |
* | Add the option versrcreach to verify that a valid route to the | Andre Oppermann | 2004-04-23 | 2 | -7/+32 |
* | Fix a potential race when purging expired hostcache entries. | Andre Oppermann | 2004-04-23 | 1 | -3/+3 |
* | Take out an unneeded variable I forgot to remove in the last commit, | Mike Silbersack | 2004-04-22 | 1 | -2/+3 |
* | Simplify random port allocation, and add net.inet.ip.portrange.randomized, | Mike Silbersack | 2004-04-22 | 1 | -27/+13 |