From owner-cvs-all@FreeBSD.ORG Wed Feb 25 22:09:06 2004 Return-Path: Delivered-To: cvs-all@freebsd.org Received: from mx1.FreeBSD.org (mx1.freebsd.org [216.136.204.125]) by hub.freebsd.org (Postfix) with ESMTP id 017A116A4CE; Wed, 25 Feb 2004 22:09:06 -0800 (PST) Received: from lakemtao05.cox.net (lakemtao05.cox.net [68.1.17.116]) by mx1.FreeBSD.org (Postfix) with ESMTP id 61A2043D1D; Wed, 25 Feb 2004 22:09:05 -0800 (PST) (envelope-from mezz7@cox.net) Received: from mezz.mezzweb.com ([68.103.32.11]) by lakemtao05.cox.net (InterMail vM.5.01.06.08 201-253-122-130-108-20031117) with ESMTP id <20040226060903.ROXU7047.lakemtao05.cox.net@mezz.mezzweb.com>; Thu, 26 Feb 2004 01:09:03 -0500 To: Steve Kargl References: <200402260234.i1Q2YDx1014240@repoman.freebsd.org> <20040226060126.GA70201@troutmask.apl.washington.edu> Message-ID: From: Jeremy Messenger Content-Type: text/plain; format=flowed; charset=iso-8859-1 MIME-Version: 1.0 Content-Transfer-Encoding: 8bit Date: Thu, 26 Feb 2004 00:08:04 -0600 In-Reply-To: <20040226060126.GA70201@troutmask.apl.washington.edu> User-Agent: Opera7.23/Linux M2 build 518 cc: Max Laier cc: cvs-all@freebsd.org Subject: Re: cvs commit: src/sys/contrib/pf/net if_pflog.c if_pflog.h if_pfsync.c if_pfsync.h pf.c pf_ioctl.c pf_norm.c pf_osfp.c pf_table.c pfvar.h src/sys/contrib/pf/netinet in4_cksum.c X-BeenThere: cvs-all@freebsd.org X-Mailman-Version: 2.1.1 Precedence: list List-Id: CVS commit messages for the entire tree List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Thu, 26 Feb 2004 06:09:06 -0000 On Wed, 25 Feb 2004 22:01:26 -0800, Steve Kargl wrote: > On Wed, Feb 25, 2004 at 06:34:13PM -0800, Max Laier wrote: >> mlaier 2004/02/25 18:34:12 PST >> >> FreeBSD src repository >> >> Modified files: >> sys/contrib/pf/net if_pflog.c if_pflog.h if_pfsync.c >> if_pfsync.h pf.c pf_ioctl.c pf_norm.c >> pf_osfp.c pf_table.c pfvar.h >> sys/contrib/pf/netinet in4_cksum.c >> Log: >> Bring diff from the security/pf port. This has code been tested as a >> port >> for a long time and is run in production use. This is the code >> present in >> portversion 2.03 with some additional tweaks. >> >> The rather extensive diff accounts for: >> - locking (to enable pf to work with a giant-free netstack) >> - byte order difference between OpenBSD and FreeBSD for ip_len/ip_off >> - conversion from pool(9) to zone(9) >> - api differences etc. >> >> Approved by: bms(mentor) (in general) >> > > Was this import discussed on arch@ or current@? We now have ipfw, > ipfilter, and pf in the base system. How many more firewall packages are > we going to import into the base system? Are you going to remove ipfw > or ipfilter? Is there a NO_PF make.conf knob? http://lists.freebsd.org/mailman/htdig/cvs-src/2004-February/018320.html Yay for PF, thanks Max! Cheers, Mezz -- bsdforums.org 's moderator, mezz.