From owner-cvs-all@FreeBSD.ORG Thu Feb 26 02:38:52 2004 Return-Path: Delivered-To: cvs-all@freebsd.org Received: from mx1.FreeBSD.org (mx1.freebsd.org [216.136.204.125]) by hub.freebsd.org (Postfix) with ESMTP id 5B24D16A4CF; Thu, 26 Feb 2004 02:38:52 -0800 (PST) Received: from arginine.spc.org (arginine.spc.org [195.206.69.236]) by mx1.FreeBSD.org (Postfix) with ESMTP id AAFF543D1F; Thu, 26 Feb 2004 02:38:51 -0800 (PST) (envelope-from bms@spc.org) Received: from localhost (localhost [127.0.0.1]) by arginine.spc.org (Postfix) with ESMTP id 0BDFD6543B; Thu, 26 Feb 2004 10:38:50 +0000 (GMT) Received: from arginine.spc.org ([127.0.0.1]) by localhost (arginine.spc.org [127.0.0.1]) (amavisd-new, port 10024) with LMTP id 55674-04-3; Thu, 26 Feb 2004 10:38:49 +0000 (GMT) Received: from saboteur.dek.spc.org (82-147-17-88.dsl.uk.rapidplay.com [82.147.17.88]) (using TLSv1 with cipher DHE-RSA-AES256-SHA (256/256 bits)) (No client certificate requested) by arginine.spc.org (Postfix) with ESMTP id E591F6520E; Thu, 26 Feb 2004 10:38:48 +0000 (GMT) Received: by saboteur.dek.spc.org (Postfix, from userid 1001) id 1D2AC38; Thu, 26 Feb 2004 10:38:48 +0000 (GMT) Date: Thu, 26 Feb 2004 10:38:48 +0000 From: Bruce M Simpson To: Eric Masson Message-ID: <20040226103848.GB16873@saboteur.dek.spc.org> Mail-Followup-To: Eric Masson , Steve Kargl , Max Laier , src-committers@freebsd.org, cvs-src@freebsd.org, cvs-all@freebsd.org References: <200402260234.i1Q2YDx1014240@repoman.freebsd.org> <20040226060126.GA70201@troutmask.apl.washington.edu> <20040226061846.GB15864@saboteur.dek.spc.org> <86y8qq6xc1.fsf@t39bsdems.interne.kisoft-services.com> Mime-Version: 1.0 Content-Type: text/plain; charset=us-ascii Content-Disposition: inline In-Reply-To: <86y8qq6xc1.fsf@t39bsdems.interne.kisoft-services.com> cc: cvs-src@freebsd.org cc: Max Laier cc: src-committers@freebsd.org cc: cvs-all@freebsd.org cc: Steve Kargl Subject: Re: cvs commit: src/sys/contrib/pf/net if_pflog.c if_pflog.h if_pfsync.c if_pfsync.h pf.c pf_ioctl.c pf_norm.c pf_osfp.c pf_table.c pfvar.h src/sys/contrib/pf/netinet in4_cksum.c X-BeenThere: cvs-all@freebsd.org X-Mailman-Version: 2.1.1 Precedence: list List-Id: CVS commit messages for the entire tree List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Thu, 26 Feb 2004 10:38:52 -0000 On Thu, Feb 26, 2004 at 09:47:58AM +0100, Eric Masson wrote: > What sort of Evil plans, please ? Well, for one thing, I've been toying with the idea of IPSEC NAT passthrough. This has been raised lately on various London community wireless lists. I'd also like to get some means of filtering KaZaA out of my network. And finding answers to the interesting problems you get when you introduce a unidirectional path into the mix (satellite interfaces with telco/ether return). I feel a fresh codebase and a fresh mandate is needed, though, and pf seems to fit the bill; I personally feel more confident attempting these things with pf than with the existing code. I am also extremely pleased that the enthusiasm generated by the pf import has resulted in other work getting done which we wanted done before 5.3, as well as being appealing to our prospective user base. BMS