[Bug 166255] [net] [patch] It should be possible to disable "promiscuous mode enabled" messages

bugzilla-noreply at freebsd.org bugzilla-noreply at freebsd.org
Thu May 26 13:26:37 UTC 2016


https://bugs.freebsd.org/bugzilla/show_bug.cgi?id=166255

--- Comment #24 from Chris Hutchinson <portmaster at bsdforge.com> ---
(In reply to eugen from comment #21)
> (In reply to Chris Hutchinson from comment #20)
> 
> You are essentially proposing the system to spend CPU time generating tons
> of messages, pass them from the kernel to userland daemon using socket
> subsystem and then spend more CPU time to filter them. Instead of just not
> doing that all in expense of single extra tunnable.

 I'd just like to go on record as indicating that this is a security
related issue, and one would *want* to know about it. In the rare
case that this is *not* true. syslog(3) should be asked to deal
with it. Has secteam@ weighed in on this?
 But given this bug has been closed, those of us whom are opposed
to this change, will simply need to add a local patch to reverse
it.

Thank you for your indulgence.

--Chris

-- 
You are receiving this mail because:
You are the assignee for the bug.


More information about the freebsd-net mailing list