From owner-freebsd-security@FreeBSD.ORG Fri Feb 6 13:23:14 2004 Return-Path: Delivered-To: freebsd-security@freebsd.org Received: from mx1.FreeBSD.org (mx1.freebsd.org [216.136.204.125]) by hub.freebsd.org (Postfix) with ESMTP id E7C3516A4CE for ; Fri, 6 Feb 2004 13:23:14 -0800 (PST) Received: from eterna.binary.net (eterna.binary.net [216.229.0.25]) by mx1.FreeBSD.org (Postfix) with ESMTP id 2D0A843D1D for ; Fri, 6 Feb 2004 13:23:13 -0800 (PST) (envelope-from blaine@binary.net) Received: from matrix.binary.net (matrix.binary.net [216.229.0.2]) by eterna.binary.net (Postfix) with ESMTP id 6A2F2B461C; Fri, 6 Feb 2004 15:23:11 -0600 (CST) Received: by matrix.binary.net (Postfix, from userid 1021) id BA3FD10296D; Fri, 6 Feb 2004 15:23:10 -0600 (CST) Date: Fri, 6 Feb 2004 15:23:10 -0600 From: Blaine Kahle To: Brett Glass Message-ID: <20040206212310.GJ94075@binary.net> Mail-Followup-To: Brett Glass , Matt Piechota , "'freebsd-security@freebsd.org'" , "Gogh, Ruben van" References: <0FDD52D38220D611B7CC0004763B3744F80821@HNTS-04> <4023AD12.6070106@sitetronics.com> <6.0.0.22.2.20040206104336.0587c5a0@localhost> <20040206151109.S921@cithaeron.argolis.org> <6.0.0.22.2.20040206132723.058bf848@localhost> Mime-Version: 1.0 Content-Type: text/plain; charset=us-ascii Content-Disposition: inline In-Reply-To: <6.0.0.22.2.20040206132723.058bf848@localhost> User-Agent: Mutt/1.4.1i cc: "'freebsd-security@freebsd.org'" cc: "Gogh, Ruben van" Subject: Re: IPFIREWALL_DEFAULT_TO_ACCEPT becomes default to deny X-BeenThere: freebsd-security@freebsd.org X-Mailman-Version: 2.1.1 Precedence: list List-Id: Security issues [members-only posting] List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Fri, 06 Feb 2004 21:23:15 -0000 On Fri, Feb 06, 2004 at 01:28:03PM -0700, Brett Glass wrote: > At 01:16 PM 2/6/2004, Matt Piechota wrote: > > >Aren't supposed to run 'config' on your kernel conf when you modify it? > > Of course. After which you change directories and actually do the > build. (Why this isn't automatic, I don't know.) Because that's the "old" way of doing it. The "new" way (buildkernel, installkernel) has been around for some time (4.2 at the least). http://www.freebsd.org/doc/en_US.ISO8859-1/books/handbook/kernelconfig-building.html -- Blaine Kahle blaine@binary.net 0x178AA0E0