From owner-freebsd-stable@FreeBSD.ORG Fri Feb 17 11:21:27 2012 Return-Path: Delivered-To: freebsd-stable@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2001:4f8:fff6::34]) by hub.freebsd.org (Postfix) with ESMTP id BA5151065670 for ; Fri, 17 Feb 2012 11:21:27 +0000 (UTC) (envelope-from alexander@leidinger.net) Received: from mail.ebusiness-leidinger.de (mail.ebusiness-leidinger.de [217.11.53.44]) by mx1.freebsd.org (Postfix) with ESMTP id 492328FC0A for ; Fri, 17 Feb 2012 11:21:27 +0000 (UTC) Received: from outgoing.leidinger.net (p5796CEAE.dip.t-dialin.net [87.150.206.174]) by mail.ebusiness-leidinger.de (Postfix) with ESMTPSA id 30ADA84498E; Fri, 17 Feb 2012 12:21:13 +0100 (CET) Received: from webmail.leidinger.net (webmail.Leidinger.net [IPv6:fd73:10c7:2053:1::3:102]) by outgoing.leidinger.net (Postfix) with ESMTPS id 6F00B529D; Fri, 17 Feb 2012 12:21:10 +0100 (CET) DKIM-Signature: v=1; a=rsa-sha256; c=simple/simple; d=leidinger.net; s=outgoing-alex; t=1329477670; bh=RnZKl+jBmvb4SZ/Mq7AF2jL6d6fSYB6bTGgo5xKR2BI=; h=Date:Message-ID:From:To:Cc:Subject:References:In-Reply-To: Content-Type:MIME-Version:Content-Transfer-Encoding; b=fDuYAa6QivuvodRsYtZofWuswEoQWCJFNbqHpG9CdgIurzsL1CJcPg8KujENJLJGN mclvvuNOgMEblGNo+YKB13HINEA+lj41fsciMiMQPj+lZSPfx6WCJiFAFXqDT4LySR Op8lt3D0Xv4oz8vjBIBVExFFHEK9MzfRSY6iYkjzbPcqaWh/ebb28GfPDh4hFsYbuw xOUOgML013E7VYg6p/R3WDcRazObR3oLOpIjzTmUmJIJIR4z0lAjx0+nVJ4z4+7pXd bCjRil7D1i5C5LMPqMyyRj7eMbP+MCyk9wMYS4qa45YLdQKJo3PhbAPxYCyW5OXotp Bn4tjXYWN/yBA== Received: (from www@localhost) by webmail.leidinger.net (8.14.5/8.14.4/Submit) id q1HBLANN001501; Fri, 17 Feb 2012 12:21:10 +0100 (CET) (envelope-from Alexander@Leidinger.net) X-Authentication-Warning: webmail.leidinger.net: www set sender to Alexander@Leidinger.net using -f Received: from 85.94.224.19 ([85.94.224.19]) by webmail.leidinger.net (Horde Framework) with HTTP; Fri, 17 Feb 2012 12:21:10 +0100 Date: Fri, 17 Feb 2012 12:21:10 +0100 Message-ID: <20120217122110.Horde.6XSicpjmRSRPPjgmMlJAECA@webmail.leidinger.net> From: Alexander Leidinger To: Freddie Cash References: <20120210145604.Horde.ewjpSpjmRSRPNSH0YRHxgAk@webmail.leidinger.net> <20120214123755.Horde.WkLNcJjmRSRPOkeTw7bUClA@webmail.leidinger.net> <20120215014738.O95093@sola.nimnet.asn.au> In-Reply-To: User-Agent: Internet Messaging Program (IMP) H4 (5.0.18) Content-Type: text/plain; charset=utf-8; format=flowed; DelSp=Yes MIME-Version: 1.0 Content-Disposition: inline Content-Transfer-Encoding: quoted-printable X-EBL-MailScanner-Information: Please contact the ISP for more information X-EBL-MailScanner-ID: 30ADA84498E.A3A3C X-EBL-MailScanner: Found to be clean X-EBL-MailScanner-SpamCheck: not spam, spamhaus-ZEN, SpamAssassin (not cached, score=0.085, required 6, autolearn=disabled, AWL -1.13, DKIM_SIGNED 0.10, DKIM_VALID -0.10, DKIM_VALID_AU -0.10, RCVD_IN_BL_SPAMCOP_NET 1.25, TW_PF 0.08, T_RP_MATCHES_RCVD -0.01) X-EBL-MailScanner-From: alexander@leidinger.net X-EBL-MailScanner-Watermark: 1330082474.70694@/obJ0R4qlr60u9qhTzPiag X-EBL-Spam-Status: No X-Mailman-Approved-At: Fri, 17 Feb 2012 12:23:35 +0000 Cc: freebsd-stable@freebsd.org Subject: Re: Custom kernel poll summary (was: Re: Reducing the need to compile a custom kernel) X-BeenThere: freebsd-stable@freebsd.org X-Mailman-Version: 2.1.5 Precedence: list List-Id: Production branch of FreeBSD source code List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Fri, 17 Feb 2012 11:21:27 -0000 Quoting Freddie Cash (from Tue, 14 Feb 2012 08:26:54 -0800): > On Tue, Feb 14, 2012 at 7:43 AM, Ian Smith wrote: >> On Tue, 14 Feb 2012 2:37:55 +0100, Alexander Leidinger wrote: >> =C2=A0> 1 IPSTEALTH =C2=A0 =C2=A0 =C2=A0 =C2=A0 =C2=A0 =C2=A0 =C2=A0 =C2= =A0 =C2=A0 =C2=A0 =C2=A0-> changes ipfw module only? >> >> I don't think this is specific to ipfw. =C2=A0From /sys/conf/NOTES: >> >> # IPSTEALTH enables code to support stealth forwarding (i.e., forwarding >> # packets without touching the TTL). =C2=A0This can be useful to hide fi= rewalls >> # from traceroute and similar tools. >> >> But can it be disabled once added to kernel? =C2=A0It's no good as a def= ault. > > It's controllable via sysctl once it's compiled into the kernel. If > it's not compiled into the kernel, then the sysctl doesn't exist. Is it the following? net.inet.ip.stealth=3D0 Bye, Alexander. -- BOFH excuse #152: My pony-tail hit the on/off switch on the power strip http://www.Leidinger.net Alexander @ Leidinger.net: PGP ID =3D B0063FE7 http://www.FreeBSD.org netchild @ FreeBSD.org : PGP ID =3D 72077137