From owner-freebsd-doc Thu Apr 5 16:40: 8 2001 Delivered-To: freebsd-doc@freebsd.org Received: from freefall.freebsd.org (freefall.freebsd.org [216.136.204.21]) by hub.freebsd.org (Postfix) with ESMTP id 009A037B423 for ; Thu, 5 Apr 2001 16:40:03 -0700 (PDT) (envelope-from gnats@FreeBSD.org) Received: (from gnats@localhost) by freefall.freebsd.org (8.11.1/8.11.1) id f35Ne3j25767; Thu, 5 Apr 2001 16:40:03 -0700 (PDT) (envelope-from gnats) Date: Thu, 5 Apr 2001 16:40:03 -0700 (PDT) Message-Id: <200104052340.f35Ne3j25767@freefall.freebsd.org> To: freebsd-doc@freebsd.org Cc: From: anarcat Subject: Re: docs/26366: ipfw(8) doesn't document which sysctl control dynamic rules Reply-To: anarcat Sender: owner-freebsd-doc@FreeBSD.ORG Precedence: bulk X-Loop: FreeBSD.org The following reply was made to PR docs/26366; it has been noted by GNATS. From: anarcat To: Dima Dorfman Cc: freebsd-gnats-submit@freebsd.org Subject: Re: docs/26366: ipfw(8) doesn't document which sysctl control dynamic rules Date: Thu, 5 Apr 2001 18:39:17 -0500 --Nq2Wo0NMKNjxTN9z Content-Type: text/plain; charset=us-ascii Content-Disposition: inline Content-Transfer-Encoding: quoted-printable Er. I'm sorry. :) Apart from that...=20 Shouldn't sysctl(8) document all sysctl? :) Anyways, sorry again for the noise.. Thank you for your politeness. :) A. On Thu, 05 Apr 2001, Dima Dorfman wrote: > anarcat@tao.ca writes: > >=20 > > >Number: 26366 > > >Category: docs > > >Synopsis: ipfw(8) doesn't document which sysctl control dynamic = rules > > > > Note that it mentions sysctl(8) variables, but does not specify > > which. I have not been able to find the specification anywhere. In > > sysctl(8) or anywhere else.. >=20 > No offense, but you can't have looked too hard. There's a section in > ipfw(8) titled ``SYSCTL VARIABLES'' which documents all the sysctls in > the net.inet.ip.fw tree. Here's an excerpt: >=20 > SYSCTL VARIABLES > A set of sysctl(8) variables controls the behaviour of the firewall. > These are shown below together with their default value and meaning: >=20 > net.inet.ip.fw.debug: 1 > Controls debugging messages produced by ipfw. >=20 > net.inet.ip.fw.one_pass: 1 > [...] > net.inet.ip.fw.dyn_buckets: 256 >=20 > net.inet.ip.fw.curr_dyn_buckets: 256 > The configured and current size of the hash table used to ho= ld > dynamic rules. This must be a power of 2. The table can on= ly be > resized when empty, so in order to resize it on the fly you = will > probably have to flush and reload the ruleset. > [...] --Nq2Wo0NMKNjxTN9z Content-Type: application/pgp-signature Content-Disposition: inline -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.0.0 (GNU/Linux) Comment: For info see http://www.gnupg.org iEYEARECAAYFAjrNAiMACgkQ7uV99pHLOSLCkwCeO6MjWDlmV6IXFZFWE04JpVFT bq4AoL9txeFFmbX2YnbfL4b/3rCx/qMj =+ZRH -----END PGP SIGNATURE----- --Nq2Wo0NMKNjxTN9z-- To Unsubscribe: send mail to majordomo@FreeBSD.org with "unsubscribe freebsd-doc" in the body of the message