cvs commit: src/sys/netinet ip_fw.h ip_fw2.c ip_fw_pfil.c
brooks at one-eyed-alien.net
Fri May 12 05:05:26 UTC 2006
On Fri, May 12, 2006 at 01:57:32PM +0900, Hajimu UMEMOTO wrote:
> >>>>> On Fri, 12 May 2006 04:41:28 +0000 (UTC)
> >>>>> Max Laier <mlaier at FreeBSD.org> said:
> mlaier> mlaier 2006-05-12 04:41:28 UTC
> mlaier> Modified files:
> mlaier> sys/netinet ip_fw.h ip_fw2.c ip_fw_pfil.c ip_input.c
> mlaier> Log:
> mlaier> Reintroduce net.inet6.ip6.fw.enable sysctl to dis/enable the ipv6 processing
> mlaier> seperately. Also use pfil hook/unhook instead of keeping the check
> It seems net.inet6.ip6.fw.enable is conflict between ipfw and ip6fw,
> now. I think that it prevent users from using ipfw for IPv4 and ip6fw
> for IPv6.
This is a preparatory commit for removal of IP6FW. We're aware that
IPFW isn't a perfect replacement for IP6FW, but we've got to get the
number of firewalls down to something reasonable and this has been on
the list since last BSDCan.
Any statement of the form "X is the one, true Y" is FALSE.
PGP fingerprint 655D 519C 26A7 82E7 2529 9BF0 5D8E 8BE9 F238 1AD4
-------------- next part --------------
A non-text attachment was scrubbed...
Name: not available
Size: 189 bytes
Desc: not available
Url : http://lists.freebsd.org/pipermail/cvs-src/attachments/20060512/c88a25b6/attachment.pgp
More information about the cvs-src