Skip site navigation (1)Skip section navigation (2)
Date:      Fri, 24 Sep 2004 14:50:48 +0200
From:      Max Laier <max@love2party.net>
To:        Maxim Konovalov <maxim@freebsd.org>
Cc:        cvs-all@freebsd.org
Subject:   Re: cvs commit: src/sys/netinet ip_input.c
Message-ID:  <200409241450.59730.max@love2party.net>
In-Reply-To: <200409241218.i8OCIfQw021308@repoman.freebsd.org>
References:  <200409241218.i8OCIfQw021308@repoman.freebsd.org>

next in thread | previous in thread | raw e-mail | index | archive | help

[-- Attachment #1 --]
On Friday 24 September 2004 14:18, Maxim Konovalov wrote:
> maxim       2004-09-24 12:18:41 UTC
>
>   FreeBSD src repository
>
>   Modified files:
>     sys/netinet          ip_input.c
>   Log:
>   o Turn net.inet.ip.check_interface sysctl off by default.
>
>   When net.inet.ip.check_interface was MFCed to RELENG_4 3+ years ago in
>   rev. 1.130.2.17 ip_input.c it was 1 by default but shortly changed to
>   0 (accidently?) in rev. 1.130.2.20 in RELENG_4 only.  Among with the
>   fact this knob is not documented it breaks POLA especially in bridge
>   environment.
>
>   OK'ed by:       andre
>   Reviewed by:    -current

Can we have a plan to move towards turning it on again? For RELENG_6 the 
latest. This check is useful and we should have the code exposed by default 
so that new code does not break the assumption. The documentation issue has 
to be resolved, of course.

-- 
/"\  Best regards,                      | mlaier@freebsd.org
\ /  Max Laier                          | ICQ #67774661
 X   http://pf4freebsd.love2party.net/  | mlaier@EFnet
/ \  ASCII Ribbon Campaign              | Against HTML Mail and News

[-- Attachment #2 --]
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.2.6 (FreeBSD)

iD8DBQBBVBgzXyyEoT62BG0RAgBYAJ9e7TCQO7h0IHrpgzmFI1ZXlYxnpwCff4MU
QvytTuxrFDaUIHeCZHN7mwc=
=H5JT
-----END PGP SIGNATURE-----

Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?200409241450.59730.max>