From owner-freebsd-net Tue Jun 2 01:30:21 1998 Return-Path: Received: (from majordom@localhost) by hub.freebsd.org (8.8.8/8.8.8) id BAA13293 for freebsd-net-outgoing; Tue, 2 Jun 1998 01:30:21 -0700 (PDT) (envelope-from owner-freebsd-net@FreeBSD.ORG) Received: from msf1.swe.ids.dps.casa.es (pppuser060.recol.es [195.53.237.124]) by hub.freebsd.org (8.8.8/8.8.8) with ESMTP id BAA13136 for ; Tue, 2 Jun 1998 01:29:51 -0700 (PDT) (envelope-from jlfreniche@acm.org) Received: from hpswe.swe.ids.dps.casa.es (hpswe.swe.ids.dps.casa.es [172.16.50.100]) by msf1.swe.ids.dps.casa.es (8.8.8/8.8.8) with ESMTP id JAA02128 for ; Tue, 2 Jun 1998 09:55:52 +0200 (CEST) (envelope-from jlfreniche@acm.org) Received: from hpswe.swe.ids.dps.casa.es (localhost [127.0.0.1]) by hpswe.swe.ids.dps.casa.es with SMTP (8.7.6/8.7.3) id JAA07680 for ; Tue, 2 Jun 1998 09:57:05 +0200 (METDST) Message-ID: <3573B051.A6F@acm.org> Date: Tue, 02 Jun 1998 09:57:05 +0200 From: "Juan L. Freniche" X-Mailer: Mozilla 3.01Gold (X11; I; HP-UX B.10.20 9000/879) MIME-Version: 1.0 To: FreeBSD NET Subject: Re: Questions again on T/TCP References: <199806012042.EAA11209@spinner.netplex.com.au> Content-Type: text/plain; charset=us-ascii Content-Transfer-Encoding: 7bit Sender: owner-freebsd-net@FreeBSD.ORG Precedence: bulk X-Loop: FreeBSD.org Peter Wemm wrote: > TF_NOPUSH is *copied* from the listening socket. It's only present if the > listener has explicitly enabled it. > > tp->t_flags |= tp0->t_flags & (TF_NOPUSH|TF_NOOPT); > > ie: only copy the TF_NOPUSH and TF_NOOPT flags from the listener to the > clone. If they are not set on the master/listener, the clone does not get > them. Thanks Peter, I missed the 0 in tp0. But I still don't understand why insertion of this test solves the security hole. -------------------------- E-Mail: jlfreniche@acm.org -------------------------- To Unsubscribe: send mail to majordomo@FreeBSD.org with "unsubscribe freebsd-net" in the body of the message