Age | Commit message (Expand) | Author |
2011-06-21 | There is no need to handle fragmented TCP reset packets in a special | Alexander Bluhm |
2011-06-20 | More cleanup in pf_test/pf_test6 this time mostly the fragment | Claudio Jeker |
2011-06-18 | pass the correct size to memset | Jonathan Gray |
2011-06-14 | KNF (no change in .o files) | Ryan Thomas McBride |
2011-06-02 | When checking to see if a rule is referenced by any source-tracking nodes, | Stuart Henderson |
2011-06-02 | Don't destroy a non-persistent table if referenced by src_nodes. Fixes | Stuart Henderson |
2011-05-25 | Don't do last minute changes to diffs. Revert the argument change to | Claudio Jeker |
2011-05-24 | Merge pf_scrub_ip() and pf_scrub_ip6() into a single function. Call | Claudio Jeker |
2011-05-22 | Do not pass AF specific information to pf_test_rule() and PFLOG_PACKET() | Claudio Jeker |
2011-05-20 | Change 'set skip on <...>' to work with interface groups. | Stuart Henderson |
2011-05-17 | exclude link local address from the dynamic interface address pool | Mike Belopuhov |
2011-05-16 | bring back r1.189, but keep doing the ip csum unconditionally for now until | Henning Brauer |
2011-05-13 | Revert the pf->socket linking diff. | Owain Ainsworth |
2011-05-10 | when undeferring a packet, try to timeout_del first to check if you | David Gwynne |
2011-05-04 | Collapse m_pullup and m_pullup2 into a single function, as they're | Bret Lambert |
2011-04-29 | Why precompute the route for the gre tunnel when ip_output can do | Claudio Jeker |
2011-04-24 | Double link between pf states and sockets. Henning has already | Alexander Bluhm |
2011-04-23 | pf_scrub_ip() does not modify the given mbuf pointer. So don't | Alexander Bluhm |
2011-04-22 | pf_pooladdr_pl does not exist anymore. Remove its extern declaration. | Alexander Bluhm |
2011-04-19 | Fix potential null dereference. | Charles Longeau |
2011-04-17 | in_ifinit() is not prepared to be called from interrupt context so add | Stefan Sperling |
2011-04-14 | knf. remove extra spaces and wrap long lines. | David Gwynne |
2011-04-13 | export udpencap state of SA to userland; unbreaks sasyncd(8) with NAT/T. | Markus Friedl |
2011-04-12 | put the accepted socket of a diverted connection into the routing domain | Mike Belopuhov |
2011-04-10 | Revert Rev. 1.189. The delayed ip checksum calculation causes problems | Claudio Jeker |
2011-04-08 | Fix a 64-bit arithmetic bug I stumbled upon while investigating our | Matthew Dempsky |
2011-04-07 | Correctly initialize local variables in pf_check_proto_cksum(), even for | Miod Vallat |
2011-04-07 | Do not use NULL in integer comparisons. No functional change. | Miod Vallat |
2011-04-06 | Allow PF to filter on the rdomain a packet belongs to. This allows to | Claudio Jeker |
2011-04-05 | in pf_check_proto_cksum, consider packets with the CSUM_OUT flags set | Henning Brauer |
2011-04-05 | mechanic rename M_{TCP|UDP}V4_CSUM_OUT -> M_{TCP|UDP}_CSUM_OUT | Henning Brauer |
2011-04-05 | handle ACK prioritization for v6, ok henning@ | Stuart Henderson |
2011-04-05 | ditch fastroute, an ipf feature that made its way into pf before | Mike Belopuhov |
2011-04-04 | m_copyback is no longer a void function, so start using its error return | Bret Lambert |
2011-04-04 | de-guttenberg our stack a bit | Henning Brauer |
2011-04-04 | previous commit replaced a malloc(new) with malloc(sizeof(*new)) which | Bret Lambert |
2011-04-04 | Don't do crazy address manipulations when looking up the remote end | Claudio Jeker |
2011-04-04 | and stop special casing the bridge for the ip cksum hardware offload | Henning Brauer |
2011-04-04 | stop fiddling with the ip checksum here too, it is always recalculated | Henning Brauer |
2011-04-04 | stop using the stupid R_Malloc/Bcopy/Free macros, and just start using | Bret Lambert |
2011-04-04 | there is no point at all in updating the ip checksum. it is always | Henning Brauer |
2011-04-04 | all I wanted is to make the bridge behave like the real stack wrt the ip | Henning Brauer |
2011-04-03 | Always reserve space in the routing socket for a desync mbuf. This allows | Joel Sing |
2011-04-03 | Don't attempt to enqueue mbufs on sockets marked as SS_CANTRCVMORE, as | Bret Lambert |
2011-04-02 | dont let pfsync defer packets for states with NOSYNC set. | David Gwynne |
2011-04-02 | add a pipex ioctl that lets you specify a description on pppx interfaces by | David Gwynne |
2011-04-02 | configure the addresses on the pppx interface when its created by npppd so | David Gwynne |
2011-04-02 | add the local ip address to the session request ioctl so npppd can tell it | David Gwynne |
2011-03-31 | - use nitems(); no binary change | Jasper Lievisse Adriaanse |
2011-03-25 | Include original rdomain in DIOCNATLOOK. This allows userland proxies | Claudio Jeker |