From owner-freebsd-bugs@FreeBSD.ORG Sat Feb 19 02:45:45 2005 Return-Path: Delivered-To: freebsd-bugs@freebsd.org Received: from mx1.FreeBSD.org (mx1.freebsd.org [216.136.204.125]) by hub.freebsd.org (Postfix) with ESMTP id BFFFE16A4CE for ; Sat, 19 Feb 2005 02:45:45 +0000 (GMT) Received: from obsecurity.dyndns.org (CPE0050040655c8-CM00111ae02aac.cpe.net.cable.rogers.com [69.199.47.57]) by mx1.FreeBSD.org (Postfix) with ESMTP id 6FBD943D53 for ; Sat, 19 Feb 2005 02:45:45 +0000 (GMT) (envelope-from kris@obsecurity.org) Received: by obsecurity.dyndns.org (Postfix, from userid 1000) id B4AFD5147A; Fri, 18 Feb 2005 18:45:44 -0800 (PST) Date: Fri, 18 Feb 2005 18:45:44 -0800 From: Kris Kennaway To: Pawel Malachowski Message-ID: <20050219024544.GA86942@xor.obsecurity.org> References: <200502161520.j1GFKGiU037098@freefall.freebsd.org> <20050216184051.GA30070@shellma.zin.lublin.pl> Mime-Version: 1.0 Content-Type: multipart/signed; micalg=pgp-sha1; protocol="application/pgp-signature"; boundary="qMm9M+Fa2AknHoGS" Content-Disposition: inline In-Reply-To: <20050216184051.GA30070@shellma.zin.lublin.pl> User-Agent: Mutt/1.4.2.1i cc: freebsd-bugs@freebsd.org Subject: Re: kern/77570: [PATCH] ipfw: Multiple rules may have the same number. X-BeenThere: freebsd-bugs@freebsd.org X-Mailman-Version: 2.1.1 Precedence: list List-Id: Bug reports List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Sat, 19 Feb 2005 02:45:45 -0000 --qMm9M+Fa2AknHoGS Content-Type: text/plain; charset=us-ascii Content-Disposition: inline Content-Transfer-Encoding: quoted-printable On Wed, Feb 16, 2005 at 07:40:51PM +0100, Pawel Malachowski wrote: > On Wed, Feb 16, 2005 at 03:20:16PM +0000, Maxim Konovalov wrote: >=20 > > > I thought it was some kind of a side effect in rule manipulation co= de, but > > > if some reasons push people to use this feature, feel free to close= this PR > > > (and thanks for reaction). > > =20 > > This is just my opinion. I'd suggest to discuss your patch in -net or > > -ipfw maillists and ask people what they think. >=20 > I would vote this is a feature, not a bug. I personally rely on this > behaviour in some of my ipfw rulesets. So do I. It makes it easy to remove a related group of rules all at once. Kris --qMm9M+Fa2AknHoGS Content-Type: application/pgp-signature Content-Disposition: inline -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.4.0 (FreeBSD) iD8DBQFCFqhYWry0BWjoQKURAigLAJ44S2xifFk59TFVle8ZYyvrLcRGJQCdFtDI ddtAHVIqxaNCUvrTUy1fdwk= =I4a2 -----END PGP SIGNATURE----- --qMm9M+Fa2AknHoGS--