From owner-freebsd-current@FreeBSD.ORG Wed Feb 23 15:18:35 2005 Return-Path: Delivered-To: freebsd-current@freebsd.org Received: from mx1.FreeBSD.org (mx1.freebsd.org [216.136.204.125]) by hub.freebsd.org (Postfix) with ESMTP id CBF8C16A4CE for ; Wed, 23 Feb 2005 15:18:35 +0000 (GMT) Received: from jail1-fbsd4.consiagnet.it (jail1-fbsd4.consiagnet.it [83.149.128.151]) by mx1.FreeBSD.org (Postfix) with ESMTP id CC01C43D55 for ; Wed, 23 Feb 2005 15:18:34 +0000 (GMT) (envelope-from rionda@gufi.org) Received: from localhost.localdomain (host130-176.pool8254.interbusiness.it [82.54.176.130]) (using TLSv1 with cipher RC4-MD5 (128/128 bits)) (No client certificate requested) by jail1-fbsd4.consiagnet.it (Postfix) with ESMTP id 174605795; Wed, 23 Feb 2005 16:23:20 +0100 (CET) From: Matteo Riondato To: Clive Lin In-Reply-To: <20050222183614.GA1644@tongi.org> References: <1109071079.1390.21.camel@kaiser.sig11.org> <20050222095536.E97883@carver.gumbysoft.com> <20050222183614.GA1644@tongi.org> Content-Type: multipart/signed; micalg=pgp-sha1; protocol="application/pgp-signature"; boundary="=-ACmGb63VoGcDxUD+gmE/" Date: Wed, 23 Feb 2005 16:18:32 +0100 Message-Id: <1109171912.1390.33.camel@kaiser.sig11.org> Mime-Version: 1.0 X-Mailer: Evolution 2.0.2 FreeBSD GNOME Team Port cc: freebsd-current@freebsd.org Subject: Re: Question about periodic X-BeenThere: freebsd-current@freebsd.org X-Mailman-Version: 2.1.1 Precedence: list List-Id: Discussions about the use of FreeBSD-current List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Wed, 23 Feb 2005 15:18:35 -0000 --=-ACmGb63VoGcDxUD+gmE/ Content-Type: text/plain Content-Transfer-Encoding: quoted-printable Wed, 23-02-2005 at 02:36 +0800, Clive Lin wrote: > On Tue, Feb 22, 2005 at 10:06:16AM -0800, Doug White wrote: > > Or take the -u out of the default, which I think is the intended behavi= or, > > looking at the commit logs. The daily_status_security_diff_flags optio= n > > predates the pf scripts by about 3 months so I'm not sure how that got > > past testing :) > >=20 > > Please send-pr this and poke mlaier and keramida about it. >=20 > At that time the pf scripts was made, it was solely used on > 5.3-RELEASE here. :p (*cough cough*, I see, no excuse.) It looks like > pf, ipfw and ipf periodic scripts are all suffering from exactly the > same pain. >=20 > # grep -l new_only 5* > 500.ipfwdenied > 510.ipfdenied > 520.pfdenied Not just them...=20 #grep -rl new_only . ./500.ipfwdenied ./510.ipfdenied ./600.ip6fwdenied ./700.kernelmsg ./security.functions ./520.pfdenied (security.function is the "guilty" file) I think this should be fixed as suggested in the PRs conf/73992 and conf/77932 Best Regards --=20 Rionda aka Matteo Riondato GUFI Staff Member (http://www.gufi.org) FreeSBIE Developer (http://www.freesbie.org) BSD-FAQ-it Main Developer (http://utenti.gufi.org/~rionda) Sent from: kaiser.sig11.org running FreeBSD-6.0-CURRENT --=-ACmGb63VoGcDxUD+gmE/ Content-Type: application/pgp-signature; name=signature.asc Content-Description: Questa parte del messaggio =?ISO-8859-1?Q?=E8?= firmata -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.2.6 (FreeBSD) iD8DBQBCHJ7H2Mp4pR7Fa+wRAqn3AKDa3hHFlse0tJMh3f9+CHSIn4DAUACgrw7h nOWIebFq1X3drVnWNT7vI1M= =GEtj -----END PGP SIGNATURE----- --=-ACmGb63VoGcDxUD+gmE/--