From owner-freebsd-net@FreeBSD.ORG Fri Sep 24 15:50:14 2004 Return-Path: Delivered-To: freebsd-net@freebsd.org Received: from mx1.FreeBSD.org (mx1.freebsd.org [216.136.204.125]) by hub.freebsd.org (Postfix) with ESMTP id 7E82316A5A2; Fri, 24 Sep 2004 15:50:14 +0000 (GMT) Received: from post5.inre.asu.edu (post5.inre.asu.edu [129.219.110.120]) by mx1.FreeBSD.org (Postfix) with ESMTP id EAB9543D1D; Fri, 24 Sep 2004 15:50:13 +0000 (GMT) (envelope-from David.Bear@asu.edu) Received: from conversion.post5.inre.asu.edu by asu.edu (PMDF V6.1-1X6 #30769) id <0I4J00A01YGX6Y@asu.edu>; Fri, 24 Sep 2004 08:46:10 -0700 (MST) Received: from smtp.asu.edu (smtp.asu.edu [129.219.110.107]) <0I4J00A0NYGX5Y@asu.edu>; Fri, 24 Sep 2004 08:46:09 -0700 (MST) Received: from moroni.pp.asu.edu (moroni.pp.asu.edu [129.219.69.200]) (8.12.10/8.12.10/asu_smtp_relay,nullclient,tcp_wrapped) with ESMTP id i8OFk671011433; Fri, 24 Sep 2004 08:46:06 -0700 (MST) Received: by moroni.pp.asu.edu (Postfix, from userid 500) id 539A0E40; Fri, 24 Sep 2004 08:45:58 -0700 (MST) Received: from post1.inre.asu.edu (post1.inre.asu.edu [129.219.110.72]) by imap1.asu.edu (8.11.0/8.11.0/asu_cyrus,tcp_wrapped) with ESMTP id fB6L1J015130 for ; Thu, 06 Dec 2001 14:01:20 -0700 (MST) Received: from conversion.post1.inre.asu.edu by asu.edu (PMDF V6.1 #40110) david.bear@asu.edu) ; Thu, 06 Dec 2001 14:01:19 -0700 (MST) Received: from mx2.freebsd.org (mx2.FreeBSD.org [216.136.204.119]) by asu.edu (PMDF V6.1 #40110) with ESMTP id <0GNX00F5IX21B7@asu.edu> for iddwb@IMAP1.ASU.EDU (ORCPT david.bear@asu.edu); Thu, 06 Dec 2001 14:01:13 -0700 (MST) Received: from hub.freebsd.org (hub.FreeBSD.org [216.136.204.18]) by mx2.freebsd.org (Postfix) with ESMTP id 88D4F55AAB; Thu, 06 Dec 2001 13:00:52 -0800 Received: by hub.freebsd.org (Postfix, from userid 538) id 730EE37B419; Thu, 06 Dec 2001 12:59:47 -0800 (PST) Received: from localhost (localhost [127.0.0.1]) by hub.freebsd.org (Postfix) with SMTP id C548C2E8002; Thu, 06 Dec 2001 12:59:44 -0800 (PST) Received: by hub.freebsd.org (bulk_mailer v1.12); Thu, 06 Dec 2001 12:59:44 -0800 Received: from mail-green.research.att.com (H-135-207-30-103.research.att.com [135.207.30.103]) by hub.freebsd.org (Postfix) with ESMTP id 0BA6937B405; Thu, 06 Dec 2001 12:59:41 -0800 (PST) Received: from alliance.research.att.commail-green.research.att.com (Postfix) with ESMTP id 7E1EF1E07C; Thu, 06 Dec 2001 15:59:40 -0500 (EST) Received: from windsor.research.att.comalliance.research.att.com (8.8.7/8.8.7) with ESMTP id PAA27865; Thu, 06 Dec 2001 15:59:39 -0500 (EST) Received: (from fenner@localhost) by windsor.research.att.com (8.8.8+Sun/8.8.5) id MAA02282; Thu, 06 Dec 2001 12:59:39 -0800 (PST) From: Bill Fenner Sender: owner-freebsd-security@FreeBSD.ORG To: dwbear75@gmail.com Message-id: <200112062059.MAA02282@windsor.research.att.com> MIME-version: 1.0 Content-type: text/plain; charset=US-ASCII Precedence: bulk X-Loop: FreeBSD.org Delivered-to: freebsd-security@freebsd.org Old-To: cjclark@alum.mit.edu Versions: dmail (solaris) 2.2j/makemail 2.9b Lines: 16 References: <20011205124430.A83642@svzserv.kemerovo.su> <20011205040316.H40864@blossom.cjclark.org> <20011205231735.A1361@grosbein.pp.ru> <20011205193859.B79705@sunbay.com> <200112051835.fB5IZqH95521@whizzo.transsys.com> <20011205204526.B89520@sunbay.com> <200112051852.fB5IqmH95809@whizzo.transsys.com> <20011205121928.A3061@blossom.cjclark.org> X-Keywords: cc: security@FreeBSD.ORG cc: net@FreeBSD.ORG Subject: Re: NOARP - gateway must answer and have frozen ARP table X-BeenThere: freebsd-net@freebsd.org X-Mailman-Version: 2.1.1 List-Id: Networking and TCP/IP with FreeBSD List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , Date: Fri, 24 Sep 2004 15:50:14 -0000 X-Original-Date: Thu, 06 Dec 2001 12:59:39 -0800 X-List-Received-Date: Fri, 24 Sep 2004 15:50:14 -0000 Garrett and I discussed what IFF_NOARP should mean about 4-5 years ago; we decided that it probably menat "no ARP". We discussed the idea of seperating it out into two flags; "Don't reply to ARP" and "don't pay attention to ARP" but decided to wait and see what people thought. 4-5 years is probably enough time to wait =) My proposal: keep IFF_NOARP, but add IFF_NOSENDARP and IFF_NOREPLYARP (or something, I'm no good at making up names). I agree with Louie that it makes sense for these to be per-interface as opposed to Ruslan's sysctl. Bill To Unsubscribe: send mail to majordomo@FreeBSD.org with "unsubscribe freebsd-security" in the body of the message