Age | Commit message (Collapse) | Author | |
---|---|---|---|
2000-08-08 | Big oops -- lucky us BLF and CAST are not used by anyone else (on the | Angelos D. Keromytis | |
other hand, the problem would have been noticed much earlier) -- noticed by bugfix@163.net | |||
2000-06-30 | Convert to use new timeout API. | Artur Grabowski | |
2000-06-26 | timeout is in seconds, not ticks. | Artur Grabowski | |
2000-06-26 | New timeouts. | Artur Grabowski | |
2000-06-22 | Convert to new timeouts. | Artur Grabowski | |
2000-06-20 | Convert if_slowtimo to use new timeouts. | Artur Grabowski | |
2000-06-20 | knf | Jason Wright | |
2000-06-20 | initialize mtu/hlim for enc interface at encattach(). | Jun-ichiro itojun Hagino | |
backgronud: inbound ipsec packet will have enc* as m->m_pkthdr.rcvif. when we try to reflect the packet back in the kernel (like icmp6 echo), we'd generate packet toward enc* interface. icmp6_reflect() will take hoplimit value from nd_ifinfo[enc*], which was not initialized by the old code. XXX the change to m->m_pkthdr.rcvif violates IPv6 scoped routing. we will need to disable it, for at least IPv6. | |||
2000-06-19 | de-#ifdef-ize | Jason Wright | |
2000-06-18 | move m_pullup2() equivalent for KAME requirement into ip6_input(). | Jun-ichiro itojun Hagino | |
it was in looutput() to make KAME ipsec4 happy. however, since we don't have KAME ipsec4 in openbsd, we don't need it in looutput(). | |||
2000-06-18 | increase my commit count by 1, because after telling niels three times that ↵ | Theo de Raadt | |
he has an indentation flaw, he has not fixed it, so i get a commit, thanks niels | |||
2000-06-17 | fix comments | Niels Provos | |
2000-06-17 | on ifconfig down ignore all routes pointing to the downed interface. | Niels Provos | |
okay itojun@ deraadt@ | |||
2000-06-16 | take MIN/MAX from param.h, okay theo@ | Niels Provos | |
2000-06-16 | use memcmp() instead of bcmp(), memcmp is <,=,> but bcmp is =,!= | Theo de Raadt | |
2000-06-08 | Add explicit inclusions of signalvar.h to files actually using syms defined | Niklas Hallqvist | |
there but relying on an indirect inclusion | |||
2000-06-02 | vlan was consuming all vlan frames before they had a chance to be bridged. | Jason Wright | |
Change the order of operations to be: ether_input() -> bridge_input() -> vlan_input() Also, only process vlan frames that are unicast for us or bcast/mcast. | |||
2000-06-02 | On input if the packet matches one of the member interface MAC addresses, | Jason Wright | |
set the receiving interface to be that interface for further processing; thanks to dorcula@uncool.org for reporting and testing. | |||
2000-05-25 | on packets incoming to the bridge machine itself, respect the | Jason Wright | |
LEARNING flag on the receiving interface (ie. don't learn when you're not supposed to). | |||
2000-05-21 | deleting some routes created by imcp redirects could result in panic | Niels Provos | |
fix from NetBSD: Delay clearing of RTF_UP until after deleting rt_gwroute. | |||
2000-05-17 | crank rt_refcnt to 32 bits, no userland effects | Theo de Raadt | |
2000-05-15 | Check to make sure vlan tag is valid (12bit) in SIOCSETVLAN | Chris Cappuccio | |
2000-05-05 | cope with interface detach (like pcmcia card removal). remove any | Jun-ichiro itojun Hagino | |
IPv6 addresses assigned to the interface. reported by ho, bunch of help from niklas. KAME PR 231. | |||
2000-04-27 | Fix SIOCSIFMTU | Chris Cappuccio | |
2000-04-26 | Remove redundant superuser check in SIOCSIFMTU | Chris Cappuccio | |
(already done in if.c) and modify comments | |||
2000-04-26 | if_vlan from FreeBSD and a few modifications | Chris Cappuccio | |
2000-04-26 | Cruft | Chris Cappuccio | |
2000-04-26 | SIOCSIFGENERIC is now in sys/sockio.h | Chris Cappuccio | |
2000-04-18 | Stats for bridge output too. | Angelos D. Keromytis | |
2000-04-18 | Sanity check on dequeued mbufs, also keep track of correct interface | Angelos D. Keromytis | |
for statistics purposes. | |||
2000-04-12 | Fix checksum for outgoing etherip/ipip packets from enc interfaces. | Angelos D. Keromytis | |
2000-04-10 | don't return directly from bridge_ioctl without splx() on invalid enc | Jason Wright | |
interfaces; modified version of patch from Armin Wolfermann <armin@wolfermann.org>. | |||
2000-04-10 | Minor oops in sanity logic, IFF_RUNNING is set/unset with IFF_UP, | Angelos D. Keromytis | |
be paranoid with uninitialized variable. | |||
2000-04-10 | output routine enqueues and calls start, rather than requeueing for input. | Angelos D. Keromytis | |
2000-04-10 | Typo. | Angelos D. Keromytis | |
2000-04-10 | SIOCAIFADDR. | Angelos D. Keromytis | |
2000-04-10 | Allow setting address. | Angelos D. Keromytis | |
2000-04-08 | If IFF_LINK0 is set, do IP-in-IP instead of Ethernet-in-IP. This will | Angelos D. Keromytis | |
be used to implement overlay networks and more flexible road-warrior support. | |||
2000-03-26 | Add RCS ID. | Angelos D. Keromytis | |
2000-03-23 | New timeout code. | Artur Grabowski | |
2000-03-23 | Remove code from the stone age. | Artur Grabowski | |
2000-03-22 | remove bogus comment | Jun-ichiro itojun Hagino | |
2000-03-22 | remove if_withname(), which was imported during KAME merge by mistake. | Jun-ichiro itojun Hagino | |
2000-03-22 | 802.11 stuff beginnings, from netbsd | Michael Shalayeff | |
2000-03-21 | add SIOCGIFMTU/SIOCSIFMTU; remediate redundant code of tun, ppp, sppp; chris@ ok | Michael Shalayeff | |
2000-03-21 | small knits in .c, more media definitions from netbsd in .h | Michael Shalayeff | |
2000-03-17 | Cryptographic services framework, and software "device driver". The | Angelos D. Keromytis | |
idea is to support various cryptographic hardware accelerators (which may be (detachable) cards, secondary/tertiary/etc processors, software crypto, etc). Supports session migration between crypto devices. What it doesn't (yet) support: - multiple instances of the same algorithm used in the same session - use of multiple crypto drivers in the same session - asymmetric crypto No support for a userland device yet. IPsec code path modified to allow for asynchronous cryptography (callbacks used in both input and output processing). Some unrelated code simplification done in the process (especially for AH). Development of this code kindly supported by Network Security Technologies (NSTI). The code was writen mostly in Greece, and is being committed from Montreal. | |||
2000-03-12 | remove redundant check against ifa_dstaddr. | Jun-ichiro itojun Hagino | |
2000-03-12 | don't touch root radix node on RTM_*. this can panic system from | Jun-ichiro itojun Hagino | |
non-root userland process, under certain routing table setup. http://orange.kame.net/dev/query-pr.cgi?pr=217 | |||
2000-03-03 | $OpenBSD$ | Todd T. Fries | |