From nobody Fri Dec 19 13:02:00 2025 X-Original-To: dev-commits-src-main@mlmmj.nyi.freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2610:1c1:1:606c::19:1]) by mlmmj.nyi.freebsd.org (Postfix) with ESMTP id 4dXnk32hZgz6LcXM; Fri, 19 Dec 2025 13:02:03 +0000 (UTC) (envelope-from des@freebsd.org) Received: from smtp.freebsd.org (smtp.freebsd.org [IPv6:2610:1c1:1:606c::24b:4]) (using TLSv1.3 with cipher TLS_AES_256_GCM_SHA384 (256/256 bits) key-exchange X25519 server-signature RSA-PSS (4096 bits) server-digest SHA256 client-signature RSA-PSS (4096 bits) client-digest SHA256) (Client CN "smtp.freebsd.org", Issuer "R13" (verified OK)) by mx1.freebsd.org (Postfix) with ESMTPS id 4dXnk30rgdz3CPc; Fri, 19 Dec 2025 13:02:03 +0000 (UTC) (envelope-from des@freebsd.org) DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=freebsd.org; s=dkim; t=1766149323; h=from:from:reply-to:subject:subject:date:date:message-id:message-id: to:to:cc:cc:mime-version:mime-version:content-type:content-type: content-transfer-encoding:content-transfer-encoding: in-reply-to:in-reply-to:references:references; bh=W7hAX/ZEA2/hsWUbwKY5kzFyoViwECYpF5VNXkiq/8Y=; b=CdM/Co9rydMbb0IXDrUi0eY0jFJWVU25FH9ZEJXs/xkutKQEKD3l3MfiZKZp7atXUmIfkz Yugqj09SDNtM7TW9nj5+GX/v788OlkvzhuV/7WdRD3qXQyHxSEyoKjyuOVCTICrOghRrJG 94mLifKNMat+wdixmVN+WUGWUVAvtlSsd/gPSDvNbRShjRWFuocMAZxi5wwb+IPMXovNWJ ltPrPyApoSMCO18PmONBFXNDvDdfND89uJWIyLdwuk7MNJW0VOU/IlS/4VZMwfue9UMcsR jS3zAsjwVJhid5iWunfBPBLia/01pzBIXd2PiTwcN/qJnWRs/50cgcL4bsDCGQ== ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=freebsd.org; s=dkim; t=1766149323; h=from:from:reply-to:subject:subject:date:date:message-id:message-id: to:to:cc:cc:mime-version:mime-version:content-type:content-type: content-transfer-encoding:content-transfer-encoding: in-reply-to:in-reply-to:references:references; bh=W7hAX/ZEA2/hsWUbwKY5kzFyoViwECYpF5VNXkiq/8Y=; b=Lkso3hn2d+Ytt+BYZZ3bnDzQJB0thkoib3H5dK/c+58/KwFNLpbxV+x2KJFCrjgSP/wVtT WWPvdIfaJOI0RgHxvvnfSw4T/g2lEB6ICsd0nhliIHtXbv82gC2OTjpsoEkaMkzultbWOS A8tMtt3hhNpSUVTdkeGB52U23PpF/hvKEHkMq0bRFqRL+HfJ3cygu2C6TvTMzSDUyPPzAy v8igz/V62itnHyFVY7MIBivgmE4LOoBCUEcsdnr7Pv74Lfrb/FkhPSPB65ctkLhe6efQTX rwN/jXOJgEaKsEXQFUJWe/olgBVcsR70MfzJxy+UoYPKXdxvA2GkdQdvvE0omA== ARC-Seal: i=1; s=dkim; d=freebsd.org; t=1766149323; a=rsa-sha256; cv=none; b=IhDxku3NAwXgvgHgG5nXwVHAMpr8FHoilpEdi0JC2sNwZNTKniRlmeC/y0V9HGUKAC0g5n VWyEeWDVtU0Ig1dmGCMEar4caW/XSIg52l9L39EE2KA4V2v5wM+pItIB/woYso1YE6IuHL xzjKtmigcfWdLBuhemmXlJdMKgPy40CVpAfCPk+0//8YsKxHBkcHpHIPCGR5UFS1bXvYBd dFLnZZGM3QVv8mYnwHO2fXHfBTpxidI1nOzbdF2kcauXlJ6mgSFONmXR8BIW4QXNcUHxwH GKFzB2+4pMM1KS9b1Xnhbc1HpRDgQDD266Q/+Y1LAANLE1skWgks1O+D6qzANQ== ARC-Authentication-Results: i=1; mx1.freebsd.org; none Received: from ltc.des.dev (lfbn-nan-1-698-103.w86-236.abo.wanadoo.fr [86.236.35.103]) (using TLSv1.3 with cipher TLS_AES_256_GCM_SHA384 (256/256 bits) key-exchange X25519 server-signature RSA-PSS (4096 bits) server-digest SHA256) (Client did not present a certificate) (Authenticated sender: des) by smtp.freebsd.org (Postfix) with ESMTPSA id 4dXnk26s1tzZLK; Fri, 19 Dec 2025 13:02:02 +0000 (UTC) (envelope-from des@freebsd.org) Received: by ltc.des.dev (Postfix, from userid 1001) id 9FC65F3C08; Fri, 19 Dec 2025 14:02:00 +0100 (CET) From: =?utf-8?Q?Dag-Erling_Sm=C3=B8rgrav?= To: Ed Maste Cc: src-committers@FreeBSD.org, dev-commits-src-all@FreeBSD.org, dev-commits-src-main@FreeBSD.org Subject: Re: git: cd240957d7ba - main - netinet: Disallow connections to INADDR_ANY In-Reply-To: <202505241814.54OIEgPR025138@gitrepo.freebsd.org> (Ed Maste's message of "Sat, 24 May 2025 18:14:42 GMT") References: <202505241814.54OIEgPR025138@gitrepo.freebsd.org> User-Agent: Gnus/5.13 (Gnus v5.13) Date: Fri, 19 Dec 2025 14:02:00 +0100 Message-ID: <86ecoq7hh3.fsf@ltc.des.dev> List-Id: Commit messages for the main branch of the src repository List-Archive: https://lists.freebsd.org/archives/dev-commits-src-main List-Help: List-Post: List-Subscribe: List-Unsubscribe: X-BeenThere: dev-commits-src-main@freebsd.org Sender: owner-dev-commits-src-main@FreeBSD.org MIME-Version: 1.0 Content-Type: text/plain; charset=utf-8 Content-Transfer-Encoding: quoted-printable Ed Maste writes: > commit cd240957d7ba43d819e9d59c6f6517fe915102c7 > Author: Ed Maste > AuthorDate: 2024-11-25 14:07:11 +0000 > Commit: Ed Maste > CommitDate: 2025-05-24 18:13:09 +0000 > > netinet: Disallow connections to INADDR_ANY >=20=20=20=20=20 > Previously connect() or sendto() to INADDR_ANY reached some socket bo= und > to some host interface address. Although this was intentional it was = an > artifact of a different era, and is not desirable now. >=20=20=20=20=20 > In 417b35a97b76 markj added support to disallow connect() to INADDR_A= NY. > Take the next logical step and disable it by default. It is still possible to connect to IN6ADDR_ANY. IMO we should either allow both or disallow both. DES --=20 Dag-Erling Sm=C3=B8rgrav - des@FreeBSD.org