From owner-cvs-src-old@FreeBSD.ORG Mon Jun 1 10:34:19 2009 Return-Path: Delivered-To: cvs-src-old@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2001:4f8:fff6::34]) by hub.freebsd.org (Postfix) with ESMTP id 645841065673 for ; Mon, 1 Jun 2009 10:34:19 +0000 (UTC) (envelope-from pjd@FreeBSD.org) Received: from repoman.freebsd.org (repoman.freebsd.org [IPv6:2001:4f8:fff6::29]) by mx1.freebsd.org (Postfix) with ESMTP id 4ED3C8FC0C for ; Mon, 1 Jun 2009 10:34:19 +0000 (UTC) (envelope-from pjd@FreeBSD.org) Received: from repoman.freebsd.org (localhost [127.0.0.1]) by repoman.freebsd.org (8.14.3/8.14.3) with ESMTP id n51AYJgW054893 for ; Mon, 1 Jun 2009 10:34:19 GMT (envelope-from pjd@repoman.freebsd.org) Received: (from svn2cvs@localhost) by repoman.freebsd.org (8.14.3/8.14.3/Submit) id n51AYJhB054892 for cvs-src-old@freebsd.org; Mon, 1 Jun 2009 10:34:19 GMT (envelope-from pjd@repoman.freebsd.org) Message-Id: <200906011034.n51AYJhB054892@repoman.freebsd.org> X-Authentication-Warning: repoman.freebsd.org: svn2cvs set sender to pjd@repoman.freebsd.org using -f From: Pawel Jakub Dawidek Date: Mon, 1 Jun 2009 10:30:00 +0000 (UTC) To: cvs-src-old@freebsd.org X-FreeBSD-CVS-Branch: HEAD Subject: cvs commit: src/sys/conf NOTES options src/sys/netinet in.h in_pcb.c in_pcb.h ip_output.c raw_ip.c src/sys/netinet6 in6.h in6_pcb.c ip6_output.c src/sys/sys priv.h X-BeenThere: cvs-src-old@freebsd.org X-Mailman-Version: 2.1.5 Precedence: list List-Id: **OBSOLETE** CVS commit messages for the src tree List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Mon, 01 Jun 2009 10:34:19 -0000 pjd 2009-06-01 10:30:00 UTC FreeBSD src repository Modified files: sys/conf NOTES options sys/netinet in.h in_pcb.c in_pcb.h ip_output.c raw_ip.c sys/netinet6 in6.h in6_pcb.c ip6_output.c sys/sys priv.h Log: SVN rev 193217 on 2009-06-01 10:30:00Z by pjd - Rename IP_NONLOCALOK IP socket option to IP_BINDANY, to be more consistent with OpenBSD (and BSD/OS originally). We can't easly do it SOL_SOCKET option as there is no more space for more SOL_SOCKET options, but this option also fits better as an IP socket option, it seems. - Implement this functionality also for IPv6 and RAW IP sockets. - Always compile it in (don't use additional kernel options). - Remove sysctl to turn this functionality on and off. - Introduce new privilege - PRIV_NETINET_BINDANY, which allows to use this functionality (currently only unjail root can use it). Discussed with: julian, adrian, jhb, rwatson, kmacy Revision Changes Path 1.1543 +0 -8 src/sys/conf/NOTES 1.672 +0 -1 src/sys/conf/options 1.110 +1 -2 src/sys/netinet/in.h 1.250 +3 -7 src/sys/netinet/in_pcb.c 1.138 +1 -2 src/sys/netinet/in_pcb.h 1.307 +8 -17 src/sys/netinet/ip_output.c 1.210 +5 -4 src/sys/netinet/raw_ip.c 1.57 +2 -0 src/sys/netinet6/in6.h 1.113 +4 -2 src/sys/netinet6/in6_pcb.c 1.133 +15 -0 src/sys/netinet6/ip6_output.c 1.30 +1 -0 src/sys/sys/priv.h