Skip site navigation (1)Skip section navigation (2)
Date:      Mon, 13 Oct 2014 01:07:55 +0000
From:      "Bjoern A. Zeeb" <bzeeb-lists@lists.zabbadoz.net>
To:        Craig Rodrigues <rodrigc@FreeBSD.org>
Cc:        freebsd-net@freebsd.org, freebsd-virtualization@freebsd.org, freebsd-arch <freebsd-arch@freebsd.org>
Subject:   Re: Enabling VIMAGE by default for FreeBSD 11?
Message-ID:  <7EAA2A23-06F9-44C9-A3E1-62AA37EE5CDA@lists.zabbadoz.net>
In-Reply-To: <CAG=rPVdFzgvEo2vR5omnDnHDisU4k0tmTo8AFOg81q12bgwgBg@mail.gmail.com>
References:  <CAG=rPVe_JGy%2BeUiDjHaXXi5=n2mWGOeZjHkbVeUeS_m1z1_uMg@mail.gmail.com> <20141012182551.002b3cc0a45a56d3f34e6174@yamagi.org> <3B4471A7-CDF4-440D-BDD8-3D5B2256B8DD@lists.zabbadoz.net> <CAG=rPVdFzgvEo2vR5omnDnHDisU4k0tmTo8AFOg81q12bgwgBg@mail.gmail.com>

next in thread | previous in thread | raw e-mail | index | archive | help

On 12 Oct 2014, at 18:19 , Craig Rodrigues <rodrigc@FreeBSD.org> wrote:

> On Oct 12, 2014 9:39 AM, "Bjoern A. Zeeb" =
<bzeeb-lists@lists.zabbadoz.net>
> wrote:
>>=20
>> No, an old perforce branch of mine had all but the last TCP ones =
fixed.
> The code is still there.
>>=20
>=20
> Can you provide a pointer to your Perforce branch?

//depot/user/bz/vimage/src/=85


Also if people are seriously thinking about virtualising pf we need to =
import the openbsd/apple pf fix from a few years ago because otherwise =
people in virtualised stacks with a /dev/pf can do ugly things.   I =
think it=92s been this one:  =
http://cve.mitre.org/cgi-bin/cvename.cgi?name=3DCVE-2010-3830

/bz

=97=20
Bjoern A. Zeeb             "Come on. Learn, goddamn it.", WarGames, 1983




Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?7EAA2A23-06F9-44C9-A3E1-62AA37EE5CDA>