Age | Commit message (Expand) | Author |
2002-02-14 | If helps to loop over the correct variable *sigh* | Jason Wright |
2002-02-13 | Be -really- careful not to modify the payload when replacing the ethernet | Jason Wright |
2002-02-13 | sync with KAME. | Kenjiro Cho |
2002-02-11 | Remove unused function prototype, from Jason Ish | Daniel Hartmeier |
2002-02-11 | Remove ancient comment regarding memcmp(), from Jason Ish | Daniel Hartmeier |
2002-02-07 | bridge_output() needs a forcibly aligned copy just like bridge_broadcast() | Jason Wright |
2002-02-07 | Quiet down an annoying message in altq_etherclassify. | Artur Grabowski |
2002-01-23 | compatability -> compatibility. | Federico G. Schwindt |
2002-01-23 | Back out part of last commit, it causes memory to be freed prematurely | Todd C. Miller |
2002-01-23 | It looks like there has been one crack smoking and a few cut and pastes. | Artur Grabowski |
2002-01-23 | Pool deals fairly well with physical memory shortage, but it doesn't deal | Artur Grabowski |
2002-01-18 | Fix some zlib memory leaks, originally from Mark Adler | Todd C. Miller |
2002-01-12 | - Only apply fastroute and route-to if we are going in the same | jasoni |
2002-01-11 | pad the pf_state_{host,peer} to a 32bit quantity; dhartmei@ frantzen@ ok | Michael Shalayeff |
2002-01-09 | Add labels to rules. These are arbitrary names (not to be confused with | Daniel Hartmeier |
2002-01-08 | Add "no nat/rdr/binat" to nat.conf. The first matching rule applies. | Daniel Hartmeier |
2002-01-02 | allow for setting of the loopback MTU, set IFF_RUNNING on address configuration | Dug Song |
2002-01-02 | Don't forget to deallocate on failure. | Jason Wright |
2002-01-01 | This is ugly: make a specialized deep copy in bridge_broadcast() that | Jason Wright |
2001-12-31 | only require write mode for modifying ioctls; dhartmei@, frantzen@, deraadt@ ok | Michael Shalayeff |
2001-12-27 | revision 1.12 lacks paren around && within || (gcc warns and compilation stops). | Jun-ichiro itojun Hagino |
2001-12-26 | misplaced (), causing tcp header be examined in non-tcp packets | Michael Shalayeff |
2001-12-26 | cosmetic | Jun-ichiro itojun Hagino |
2001-12-18 | NRL license cleaning | Theo de Raadt |
2001-12-18 | Update rt_ifp in DIOCCHANGERULE. | jasoni |
2001-12-15 | add support for creating span ports so that one can snoop a bridge | Jason Wright |
2001-12-13 | remove redundant #if NPF. ok jason@ | jasoni |
2001-12-12 | Remember to add the current time...problem noticed by ho@ | Angelos D. Keromytis |
2001-12-11 | Use queue.h macros. | Jason Wright |
2001-12-11 | - Log packet while mbuf is still valid. | jasoni |
2001-12-10 | Add an ioctl to add state entries (DIOCADDSTATE) for proxies. | Daniel Hartmeier |
2001-12-10 | Add stateful filtering for other (non-TCP/UDP/ICMP) protocol, based on | Daniel Hartmeier |
2001-12-10 | use queue.h macros for TAILQ operations | Jason Wright |
2001-12-10 | update ip stats when dropping an ip packet | jasoni |
2001-12-09 | Use queue.h TAILQ macros instead of accessing members directly. | Jason Wright |
2001-12-09 | Don't access the tq members directly, use the queue.h macros. Also, | Jason Wright |
2001-12-08 | mflags and len were uninitialized in bridge_broadcast (source of some | Jason Wright |
2001-12-06 | Use hzto() to handle overflow of (hz * timeout) cases --- when using | Angelos D. Keromytis |
2001-12-03 | reason int -> u_short. From Mike Pechkin. | Daniel Hartmeier |
2001-12-03 | Don't reset pf_status.debug and .since on DIOCCLRSTATUS. | Daniel Hartmeier |
2001-12-01 | 217 lines of diff for KNF, dhartmei, you are evil | Theo de Raadt |
2001-11-30 | only make a copy of the mbuf if the route rule is dup-to | jasoni |
2001-11-30 | unifdef OLDIP6OUTPUT | Jun-ichiro itojun Hagino |
2001-11-27 | typo - use correct mbuf | jasoni |
2001-11-27 | do pf_route() before logging in case the logging created a bogus rule | Mike Frantzen |
2001-11-26 | add fastroute options similar to what is found in ipf | jasoni |
2001-11-21 | Use pf_pull_hdr() instead of manual mbuf traversal. Fixes potential crashes | Daniel Hartmeier |
2001-11-20 | don't allow CHANGEBINAT ioctl in securelevel > 1 | Mike Pechkin |
2001-11-16 | yes, signed substraction does not work because of underflows, revert the prev... | Michael Shalayeff |
2001-11-14 | use substract when comparing keys, for ip addrs as well. | Michael Shalayeff |