From owner-cvs-src@FreeBSD.ORG Tue Sep 23 10:39:59 2008 Return-Path: Delivered-To: cvs-src@FreeBSD.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2001:4f8:fff6::34]) by hub.freebsd.org (Postfix) with ESMTP id 5E5EA1065671; Tue, 23 Sep 2008 10:39:59 +0000 (UTC) (envelope-from rik@FreeBSD.org) Received: from repoman.freebsd.org (repoman.freebsd.org [IPv6:2001:4f8:fff6::29]) by mx1.freebsd.org (Postfix) with ESMTP id 4E4CA8FC12; Tue, 23 Sep 2008 10:39:59 +0000 (UTC) (envelope-from rik@FreeBSD.org) Received: from repoman.freebsd.org (localhost [127.0.0.1]) by repoman.freebsd.org (8.14.3/8.14.3) with ESMTP id m8NAdx1s075567; Tue, 23 Sep 2008 10:39:59 GMT (envelope-from rik@repoman.freebsd.org) Received: (from svn2cvs@localhost) by repoman.freebsd.org (8.14.3/8.14.3/Submit) id m8NAdxom075566; Tue, 23 Sep 2008 10:39:59 GMT (envelope-from rik@repoman.freebsd.org) Message-Id: <200809231039.m8NAdxom075566@repoman.freebsd.org> X-Authentication-Warning: repoman.freebsd.org: svn2cvs set sender to rik@repoman.freebsd.org using -f From: Roman Kurakin Date: Tue, 23 Sep 2008 10:36:37 +0000 (UTC) To: src-committers@FreeBSD.org, cvs-src@FreeBSD.org, cvs-all@FreeBSD.org X-FreeBSD-CVS-Branch: RELENG_7 Cc: Subject: cvs commit: src/sbin/ipfw ipfw2.c src/sbin/natd natd.c src/sys/netinet ip_fw.h ip_fw2.c X-BeenThere: cvs-src@freebsd.org X-Mailman-Version: 2.1.5 Precedence: list List-Id: CVS commit messages for the src tree List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Tue, 23 Sep 2008 10:39:59 -0000 rik 2008-09-23 10:36:37 UTC FreeBSD src repository Modified files: (Branch: RELENG_7) sbin/ipfw ipfw2.c sbin/natd natd.c sys/netinet ip_fw.h ip_fw2.c Log: SVN rev 183293 on 2008-09-23 10:36:37Z by rik MFH: 182818, 182823, 182825, 183012 - IPFW_DEFAULT_RULE related fixes. New Revision: 182818 URL: http://svn.freebsd.org/changeset/base/182818 Log: Export the IPFW_DEFAULT_RULE outside ip_fw2.c. This number in not only the default rule number but also the maximum rule number. User space software such as ipfw and natd should be aware of its value. The software that already includes ip_fw.h should use the defined value. All other a expected to use sysctl (as discussed on net@). MFC after: 5 days. Discussed on: net@ Modified: head/sys/netinet/ip_fw.h head/sys/netinet/ip_fw2.c New Revision: 182823 URL: http://svn.freebsd.org/changeset/base/182823 Log: Use IPFW_DEFAULT_RULE instead of hardcoded value since now it is available. MFC after: 5 days. Modified: head/sbin/ipfw/ipfw2.c New Revision: 182825 URL: http://svn.freebsd.org/changeset/base/182825 Log: Check rule numbers against maximum value to avoid rules cleanup due to overflow. MFC after: 5 days. Modified: head/sbin/natd/natd.c New Revision: 183012 URL: http://svn.freebsd.org/changeset/base/183012 Log: Make the commet for the default rule number more clear. Submitted by: yar@ Modified: head/sys/netinet/ip_fw.h Approved by: re (kensmith) Revision Changes Path 1.108.2.10 +9 -8 src/sbin/ipfw/ipfw2.c 1.50.2.1 +24 -0 src/sbin/natd/natd.c 1.110.2.5 +8 -0 src/sys/netinet/ip_fw.h 1.175.2.10 +2 -1 src/sys/netinet/ip_fw2.c