Skip site navigation (1)Skip section navigation (2)
Date:      Tue, 7 Sep 2004 17:38:19 -0700
From:      David Syphers <dsyphers@u.washington.edu>
To:        freebsd-questions@freebsd.org, fbsd_user@a1poweruser.com
Subject:   Re: 5.3 & ipfilter
Message-ID:  <200409071738.19710.dsyphers@u.washington.edu>
In-Reply-To: <MIEPLLIBMLEEABPDBIEGGENEGKAA.fbsd_user@a1poweruser.com>
References:  <MIEPLLIBMLEEABPDBIEGGENEGKAA.fbsd_user@a1poweruser.com>

next in thread | previous in thread | raw e-mail | index | archive | help
On Tuesday 07 September 2004 05:03 pm, fbsd_user wrote:
> Is there still a loadable module that gets auto loaded at boot time
> when rc.conf contains the ipfilter_enable="YES" statement like in
> 4.10?

ipfilter_enable is still an option in rc.conf.

> Will the final stable version still need kernel option PFIL_HOOKS
> added to the other ipfilter kernel options to compile ipfilter into
> the kernel like in the 5.2 and 5.2.1 development versions or will
> 5.3 return to the way 4.10 worked (IE no PFIL_HOOKS option needed)?

I'm not sure, but 5.3-BETA3 does require PFIL_HOOKS. The change made to 
-CURRENT to always include PFIL_HOOKS (and thus remove it as a kernel option) 
was made after RELENG_5 was branched, and the commit log doesn't mention 
merging that change to RELENG_5.

-David

-- 
+++ Divide By Cucumber Error. Please
Reinstall Universe And Reboot. +++



Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?200409071738.19710.dsyphers>