Skip site navigation (1)Skip section navigation (2)
Date:      Fri, 26 Jun 2009 01:04:50 +0000 (UTC)
From:      Doug Barton <dougb@FreeBSD.org>
To:        cvs-src-old@freebsd.org
Subject:   cvs commit: src/etc/rc.d NETWORKING ipfw netif pf pflog pfsync
Message-ID:  <200906260105.n5Q15EW3021968@repoman.freebsd.org>

next in thread | raw e-mail | index | archive | help
dougb       2009-06-26 01:04:50 UTC

  FreeBSD src repository

  Modified files:
    etc/rc.d             NETWORKING ipfw netif pf pflog pfsync 
  Log:
  SVN rev 195026 on 2009-06-26 01:04:50Z by dougb
  
  Reverse the effect of r193198 for pf and ipfw which will once again
  allow them to start after netif. There were too many problems reported
  with this change in the short period of time that it lived in HEAD, and
  we are too late in the release cycle to properly shake it out.
  
  IMO the issue of having the firewalls up before the network is still a
  valid concern, particularly for pf whose default state is wide open.
  However properly solving this issue is going to take some investment
  on the part of the people who actually use those tools.
  
  This is not a strict reversion of all the changes for r193198 since it
  also included some simplification of the BEFORE/REQUIRE logic which is
  still valid for ipfilter and ip6fw.
  
  Revision  Changes    Path
  1.17      +1 -1      src/etc/rc.d/NETWORKING
  1.21      +1 -1      src/etc/rc.d/ipfw
  1.32      +1 -1      src/etc/rc.d/netif
  1.19      +1 -1      src/etc/rc.d/pf
  1.14      +1 -1      src/etc/rc.d/pflog
  1.7       +1 -1      src/etc/rc.d/pfsync



Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?200906260105.n5Q15EW3021968>