<feed xmlns='http://www.w3.org/2005/Atom'>
<title>src-test2/sys/contrib/ipfilter, branch releng/6.3</title>
<subtitle>FreeBSD source tree</subtitle>
<id>https://cgit-dev.freebsd.org/src-test2/atom?h=releng%2F6.3</id>
<link rel='self' href='https://cgit-dev.freebsd.org/src-test2/atom?h=releng%2F6.3'/>
<link rel='alternate' type='text/html' href='https://cgit-dev.freebsd.org/src-test2/'/>
<updated>2007-12-01T00:53:41Z</updated>
<entry>
<title>MFC:</title>
<updated>2007-12-01T00:53:41Z</updated>
<author>
<name>Darren Reed</name>
<email>darrenr@FreeBSD.org</email>
</author>
<published>2007-12-01T00:53:41Z</published>
<link rel='alternate' type='text/html' href='https://cgit-dev.freebsd.org/src-test2/commit/?id=e1bc400aa8b07feee5178f41c841e013ac12ffaf'/>
<id>urn:sha1:e1bc400aa8b07feee5178f41c841e013ac12ffaf</id>
<content type='text'>
Fix 3 issues relating to the use of "auth" rules in IPFilter, from sourceforge:
1837014 Kernel panics after authentication of an outgoing packet
1836992 Potential bugs in packet auth code (w/patches)
1836967 Kernel panic when using auth rule with keep state
and another reported only to FreeBSD by Andiry (see PR)

PR:             kern/118251
Submitted by:   Andriy Syrovenko &lt;andriys@gmail.com&gt;
Reviewed by:    darrenr
Approved by:    re
</content>
</entry>
<entry>
<title>MFC IPFilter update from 4.1.13 to 4.1.28, including additional fixes applied</title>
<updated>2007-11-18T11:03:29Z</updated>
<author>
<name>Darren Reed</name>
<email>darrenr@FreeBSD.org</email>
</author>
<published>2007-11-18T11:03:29Z</published>
<link rel='alternate' type='text/html' href='https://cgit-dev.freebsd.org/src-test2/commit/?id=9d836d1401faf09eecfb9db7216b3881ad533928'/>
<id>urn:sha1:9d836d1401faf09eecfb9db7216b3881ad533928</id>
<content type='text'>
post 4.1.28 for FreeBSD.  See src/contrib/ipfilter/HISTORY for more details
of the bugs fixed, etc.
</content>
</entry>
<entry>
<title>Fix kernel memory leakage when policy routing is used with NAT.</title>
<updated>2007-10-27T16:54:25Z</updated>
<author>
<name>Darren Reed</name>
<email>darrenr@FreeBSD.org</email>
</author>
<published>2007-10-27T16:54:25Z</published>
<link rel='alternate' type='text/html' href='https://cgit-dev.freebsd.org/src-test2/commit/?id=b7bab6183e55692666a02ededef3d756f0320267'/>
<id>urn:sha1:b7bab6183e55692666a02ededef3d756f0320267</id>
<content type='text'>
(Already fixed in -HEAD)

PR:		kern/100098
Submitted by:	Daniel Larsson &lt;Daniel.Larsson@servicefactory.com&gt;
Reviewed by:	darrenr
Approved by:	darrenr
Obtained from:	Daniel Larsson &lt;Daniel.Larsson@servicefactory.com&gt;
</content>
</entry>
<entry>
<title>MFC rev. 1.5</title>
<updated>2006-10-26T11:22:04Z</updated>
<author>
<name>Oleg Bulyzhin</name>
<email>oleg@FreeBSD.org</email>
</author>
<published>2006-10-26T11:22:04Z</published>
<link rel='alternate' type='text/html' href='https://cgit-dev.freebsd.org/src-test2/commit/?id=584c4152cf01d411218e1b1b23a16302aa67d755'/>
<id>urn:sha1:584c4152cf01d411218e1b1b23a16302aa67d755</id>
<content type='text'>
Workaround bad locking design:
do not try to lock/unlock destroyed/non-existing mutex.

PR:		kern/103569
Reviewed by:	guido
Silence from:	darrenr
Approved by:	re (hrs)
</content>
</entry>
<entry>
<title>MFC: ipfilter 4.1.13</title>
<updated>2006-08-24T07:37:12Z</updated>
<author>
<name>Guido van Rooij</name>
<email>guido@FreeBSD.org</email>
</author>
<published>2006-08-24T07:37:12Z</published>
<link rel='alternate' type='text/html' href='https://cgit-dev.freebsd.org/src-test2/commit/?id=0c9b0dcddff37e258c3f74b051c148318d993a82'/>
<id>urn:sha1:0c9b0dcddff37e258c3f74b051c148318d993a82</id>
<content type='text'>
</content>
</entry>
<entry>
<title>Fix some minor problems before release:</title>
<updated>2005-06-23T14:19:02Z</updated>
<author>
<name>Darren Reed</name>
<email>darrenr@FreeBSD.org</email>
</author>
<published>2005-06-23T14:19:02Z</published>
<link rel='alternate' type='text/html' href='https://cgit-dev.freebsd.org/src-test2/commit/?id=721c3c7cc6abeaca3a0ae3703411f128c5cc2740'/>
<id>urn:sha1:721c3c7cc6abeaca3a0ae3703411f128c5cc2740</id>
<content type='text'>
(1) "ipf -T" is broken for fetching single entries and
(2) loading rules with numbered collections does not order insertion right.
(3) stats aren't accumulated for hash table memory failures

Approved by: re (dwhite)
</content>
</entry>
<entry>
<title>locking on exit of reading from ip_sync is not correct for all instances</title>
<updated>2005-06-14T09:18:26Z</updated>
<author>
<name>Darren Reed</name>
<email>darrenr@FreeBSD.org</email>
</author>
<published>2005-06-14T09:18:26Z</published>
<link rel='alternate' type='text/html' href='https://cgit-dev.freebsd.org/src-test2/commit/?id=ebcef7d42b6ee99b5574065dd786f8c25cfb716b'/>
<id>urn:sha1:ebcef7d42b6ee99b5574065dd786f8c25cfb716b</id>
<content type='text'>
Approved by:	re (dwhite)
</content>
</entry>
<entry>
<title>Enable building /sbin/ipf (but not the rescue version) with the ability to</title>
<updated>2005-05-16T16:22:55Z</updated>
<author>
<name>Darren Reed</name>
<email>darrenr@FreeBSD.org</email>
</author>
<published>2005-05-16T16:22:55Z</published>
<link rel='alternate' type='text/html' href='https://cgit-dev.freebsd.org/src-test2/commit/?id=051adc35a210ed08d9d83c8619a91c94cb1813f0'/>
<id>urn:sha1:051adc35a210ed08d9d83c8619a91c94cb1813f0</id>
<content type='text'>
parse bpf strings for filter rules in ipf.conf
</content>
</entry>
<entry>
<title>Enable IPFilter to correctly determine if BPF has been optioned into the</title>
<updated>2005-05-15T03:34:17Z</updated>
<author>
<name>Darren Reed</name>
<email>darrenr@FreeBSD.org</email>
</author>
<published>2005-05-15T03:34:17Z</published>
<link rel='alternate' type='text/html' href='https://cgit-dev.freebsd.org/src-test2/commit/?id=05793fcbf058f4dfcc89b74d33fcca1bfb3d4740'/>
<id>urn:sha1:05793fcbf058f4dfcc89b74d33fcca1bfb3d4740</id>
<content type='text'>
kernel it is being compiled against and subsequently enable using BPF for
packet matching in ipf rules.
</content>
</entry>
<entry>
<title>Fix the following warnings on amd64:</title>
<updated>2005-04-29T05:57:17Z</updated>
<author>
<name>Ruslan Ermilov</name>
<email>ru@FreeBSD.org</email>
</author>
<published>2005-04-29T05:57:17Z</published>
<link rel='alternate' type='text/html' href='https://cgit-dev.freebsd.org/src-test2/commit/?id=f9067637f751b75351efd0eb05bbfd303ed27987'/>
<id>urn:sha1:f9067637f751b75351efd0eb05bbfd303ed27987</id>
<content type='text'>
/usr/src/sbin/ipf/ipftest/../../../sys/contrib/ipfilter/netinet/ip_frag.c: In function `fr_ipid_newfrag':
/usr/src/sbin/ipf/ipftest/../../../sys/contrib/ipfilter/netinet/ip_frag.c:397: warning: cast to pointer from integer of different size
/usr/src/sbin/ipf/ipftest/../../../sys/contrib/ipfilter/netinet/ip_frag.c: In function `fr_ipid_knownfrag':
/usr/src/sbin/ipf/ipftest/../../../sys/contrib/ipfilter/netinet/ip_frag.c:582: warning: cast from pointer to integer of different size
</content>
</entry>
</feed>
