From owner-cvs-src@FreeBSD.ORG Sat Oct 28 21:25:44 2006 Return-Path: X-Original-To: cvs-src@FreeBSD.org Delivered-To: cvs-src@FreeBSD.org Received: from mx1.FreeBSD.org (mx1.freebsd.org [216.136.204.125]) by hub.freebsd.org (Postfix) with ESMTP id 362D016A403; Sat, 28 Oct 2006 21:25:44 +0000 (UTC) (envelope-from ceri@submonkey.net) Received: from shrike.submonkey.net (cpc2-cdif2-0-0-cust107.cdif.cable.ntl.com [81.104.168.108]) by mx1.FreeBSD.org (Postfix) with ESMTP id B7BBA43D5C; Sat, 28 Oct 2006 21:25:43 +0000 (GMT) (envelope-from ceri@submonkey.net) Received: from ceri by shrike.submonkey.net with local (Exim 4.63 (FreeBSD)) (envelope-from ) id 1GdvgT-000Kum-UP; Sat, 28 Oct 2006 22:25:41 +0100 Date: Sat, 28 Oct 2006 22:25:41 +0100 From: Ceri Davies To: Poul-Henning Kamp Message-ID: <20061028212541.GJ1690@submonkey.net> Mail-Followup-To: Ceri Davies , Poul-Henning Kamp , src-committers@FreeBSD.org, cvs-src@FreeBSD.org, cvs-all@FreeBSD.org References: <200610282008.k9SK8DxJ047891@repoman.freebsd.org> MIME-Version: 1.0 Content-Type: multipart/signed; micalg=pgp-sha1; protocol="application/pgp-signature"; boundary="ev7mvGV+3JQuI2Eo" Content-Disposition: inline In-Reply-To: <200610282008.k9SK8DxJ047891@repoman.freebsd.org> X-PGP: finger ceri@FreeBSD.org User-Agent: Mutt/1.5.13 (2006-08-11) Sender: Ceri Davies Cc: cvs-src@FreeBSD.org, src-committers@FreeBSD.org, cvs-all@FreeBSD.org Subject: Re: cvs commit: src/etc rc.firewall src/etc/defaults rc.conf X-BeenThere: cvs-src@freebsd.org X-Mailman-Version: 2.1.5 Precedence: list List-Id: CVS commit messages for the src tree List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Sat, 28 Oct 2006 21:25:44 -0000 --ev7mvGV+3JQuI2Eo Content-Type: text/plain; charset=us-ascii Content-Disposition: inline Content-Transfer-Encoding: quoted-printable On Sat, Oct 28, 2006 at 08:08:12PM +0000, Poul-Henning Kamp wrote: > phk 2006-10-28 20:08:12 UTC >=20 > FreeBSD src repository >=20 > Modified files: > etc rc.firewall=20 > etc/defaults rc.conf=20 > Log: > Give rc.firewall a polish and a new method. > =20 > Factor out the loopback setup > =20 > Use "me" instead of hardcoded $ip where possible. > =20 > Add "workstation" which protects just this machine with stateful > firewalling. Put the variables for this in rc.conf. Any reason not to replace/reimplement "client" with this? Ceri --=20 That must be wonderful! I don't understand it at all. -- Moliere --ev7mvGV+3JQuI2Eo Content-Type: application/pgp-signature Content-Disposition: inline -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.4.5 (FreeBSD) iD8DBQFFQ8rVocfcwTS3JF8RArVpAJ9nZhqqO4gdZyjLFTSaaWON+3Op8QCff4E2 4AAGs9RHvCW1T36I5Bbb0rE= =oz9M -----END PGP SIGNATURE----- --ev7mvGV+3JQuI2Eo--