Age | Commit message (Expand) | Author |
2002-06-25 | move pfctl options -t, -m, -O and -l to pf.conf. These are set using the | Henning Brauer |
2002-06-24 | Use interface when specified in scrub rule. No support for ! or {} yet. | Daniel Hartmeier |
2002-06-23 | uid_t and gid_t are unsigned | Theo de Raadt |
2002-06-20 | Copy address family from inet/inet6 keyword, if specified. | Daniel Hartmeier |
2002-06-19 | "Enabled for Ss" -> "Enabled for D days HH:MM:SS", ok frantzen@ | Daniel Hartmeier |
2002-06-18 | propogate a '!' when a host resolves to multiple IP addresses | Mike Frantzen |
2002-06-18 | don't allow individual keep state rules to specify timeouts for 'interval' and | Mike Frantzen |
2002-06-16 | Rules must in order -> Rules must be in order | Aaron Campbell |
2002-06-15 | Reset rulestate in parse_rules(), so consecutive calls (like from authpf) | Daniel Hartmeier |
2002-06-14 | make the output of pfctl -k look nice again | Henning Brauer |
2002-06-13 | Fix the numbering of scrub rules. pointed out and oked by frantzen@ | Kjell Wooding |
2002-06-12 | this stuff really belongs to stderr, not stdout | Henning Brauer |
2002-06-12 | Fix uninitialized access. Spotted by danh@ This is a good reason to | Kjell Wooding |
2002-06-11 | split the grammar of scrub(fragcache) into scrub ... 'fragment reassemble', | Mike Frantzen |
2002-06-11 | Typo in err() | Kjell Wooding |
2002-06-11 | nuke an unused parameter in pfctl_timeout. ok frantzen@ | Kjell Wooding |
2002-06-11 | Add -N, -R | Kjell Wooding |
2002-06-11 | Add -N and -R options. When used in conjunction with | Kjell Wooding |
2002-06-11 | sync with reality | Henning Brauer |
2002-06-11 | KNF, remove function parameter names | Daniel Hartmeier |
2002-06-11 | Remove parse_nat() prototype, it's gone. Yes, authpf is broken at the | Daniel Hartmeier |
2002-06-11 | Add $OpenBSD, license, include guards and remove one superfluous | Daniel Hartmeier |
2002-06-11 | print a string for UDP and OTHER state level instead of a numeric level | Mike Frantzen |
2002-06-11 | SCRUB(fragcache) to do gap tracking and overlap pruning of IPv4 fragments | Mike Frantzen |
2002-06-11 | sync usage() with reality | Henning Brauer |
2002-06-11 | Make NAT proxy port range configurable per rule, for instance privileged | Daniel Hartmeier |
2002-06-11 | rework pfctl statistics display | Henning Brauer |
2002-06-10 | Merge the NAT and rules files into a single rulefile. Rules must be | Kjell Wooding |
2002-06-10 | Allow ports to be specified in nat rules, useful later on for individual | Daniel Hartmeier |
2002-06-10 | Move enum out of struct (gcc 3.1 wasn't happy), from David Krause | Daniel Hartmeier |
2002-06-10 | some olde version piece crept into my diffski; pt out by dfa@ | Michael Shalayeff |
2002-06-10 | split scrub rule processing into its own yacc target, | Kjell Wooding |
2002-06-09 | Make pf_nat.saddr/daddr a pf_rule_addr instead of pf_addr_wrap, so it | Daniel Hartmeier |
2002-06-09 | spaced out developers... | Theo de Raadt |
2002-06-09 | Add list parsing in RDR rules: e.g. | Kjell Wooding |
2002-06-09 | use strchr() instead of index() | Theo de Raadt |
2002-06-08 | nuke unused parameter af to expand_label_port | Henning Brauer |
2002-06-08 | Change remaining read-only lookup tables to const, suggestion drahn@ | Daniel Hartmeier |
2002-06-08 | comment on IPv6 link-local twists | Jun-ichiro itojun Hagino |
2002-06-08 | pf_timeouts is shared between pfctl and authpf, put it in the shared file. | Dale Rahn |
2002-06-08 | add list expansion to src/dest in NAT rules. i.e. | Kjell Wooding |
2002-06-08 | remove macro concatenation via += per Theo's advice | Henning Brauer |
2002-06-08 | allow macro concatenation like | Henning Brauer |
2002-06-08 | Make state timeouts configurable per rule, like | Daniel Hartmeier |
2002-06-08 | expand $nr -> rule number in rule labels | Henning Brauer |
2002-06-08 | expand $proto in rule labels | Henning Brauer |
2002-06-07 | Handle realloc() failure gracefully. Terminates with err() anyway in this | Daniel Hartmeier |
2002-06-07 | henning, read this to see what i mean by KNF | Theo de Raadt |
2002-06-07 | add the possibility to configure a TTL while return-rst | Philipp Buehler |
2002-06-07 | Add "(max <number>)" option for "keep/modulate state" to limit the number | Daniel Hartmeier |