Age | Commit message (Collapse) | Author | |
---|---|---|---|
1998-02-03 | bail out for sourcerouted packets earlier, also do not forward | Theo de Raadt | |
sourcerouted packets ever if ipforwarding is off; tqbf@secnet.com | |||
1998-02-03 | bad types; wileyc@sekiya.twics.co.jp | Theo de Raadt | |
1998-02-01 | undo wildcard loopback stuff; it was not checked by other developers | Theo de Raadt | |
1998-02-01 | support wildcard loopbacks. that is, setting up lo1 like: | Michael Shalayeff | |
ifconfig lo1 inet 192.168.1.1 netmask 255.255.255.0 link1 would force it to act like all the addresses from net 192.168.1 were added to the interface. todo: man lo | |||
1998-01-26 | IPF 3.2.3 | dgregor | |
1998-01-24 | sysctl for def sizes for tcp/udp send/recv queues | Michael Shalayeff | |
1998-01-21 | rcvif not needed. | Niels Provos | |
1998-01-20 | s/(cast)0/NYLL/g | Michael Shalayeff | |
1998-01-06 | so_linger is in seconds | Theo de Raadt | |
1998-01-06 | net.inet.icmp.bmcastecho: do not smurf to smurfing broadcast packets | Theo de Raadt | |
1998-01-03 | ignore PRU_SHUTDOWN if socket is already shutdown | Theo de Raadt | |
1997-12-03 | Prevent IPF and NAT configuration changes when securelevel > 1. | kstailey | |
1997-11-30 | Move in_addr_t and in_port_t to <sys/types.h> and add sa_family_t | Todd C. Miller | |
and suseconds_t types for XPG4.2. | |||
1997-11-30 | hmm. If out of ports, return EADDRNOTAVAIL | Theo de Raadt | |
1997-11-24 | add ripemd-160 as authentication function. | Niels Provos | |
1997-11-24 | Add missing (implied) int to a variable declaration; thorpej | Theo de Raadt | |
1997-11-18 | fix 3DES, style changes | Theo de Raadt | |
1997-11-18 | make old style padding default again. | Niels Provos | |
1997-11-15 | fix memory management errors | Theo de Raadt | |
1997-11-12 | correct RST validity checking; fc@parkone.ci.oakland.ca.us | Theo de Raadt | |
1997-11-12 | indent | Theo de Raadt | |
1997-11-08 | grammar; bane@mournblade.NETural.com | Theo de Raadt | |
1997-11-07 | $OpenBSD$ | Niklas Hallqvist | |
1997-11-04 | make it easier to add additional transforms. add blowfish and cast | Niels Provos | |
encryption. some more info for kernfs/ipsec. | |||
1997-10-02 | conditional error logging | Theo de Raadt | |
1997-10-01 | should report unsigned quantities | Theo de Raadt | |
1997-10-01 | verify decryption by checking last padding bytes | Theo de Raadt | |
1997-09-30 | same as for ip_esp_new.c, and indent | Theo de Raadt | |
1997-09-30 | do the 3-DES key setup right, will ya? | Theo de Raadt | |
1997-09-29 | brain dead sanity tests corrected | Theo de Raadt | |
1997-09-28 | more \n in log() | Theo de Raadt | |
1997-09-28 | log() needs a \n | Theo de Raadt | |
1997-09-24 | New style self-describing padding in use. | Angelos D. Keromytis | |
1997-09-24 | Cosmetic changes. | Angelos D. Keromytis | |
1997-09-23 | AH changes, after interoperating at the ANX bakeoff. | Angelos D. Keromytis | |
1997-09-07 | for broadcast/multicast packets, correct m_pkthdr.len on the way up to the ↵ | Theo de Raadt | |
socket; drochner@zelz26.zel.kfa-juelich.de | |||
1997-08-26 | indent | Theo de Raadt | |
1997-08-26 | indent | Theo de Raadt | |
1997-08-26 | new esp: encryption, authentication and replay protection + | Niels Provos | |
tiny bug fixes | |||
1997-08-19 | Add DP_CLR() macro | Todd C. Miller | |
1997-08-19 | Theo doesn't like extra kernel options, so don't allow | Todd C. Miller | |
DEFBADDYNAMICPORTS_TCP and DEFBADDYNAMICPORTS_UDP to be overridden from the kernel. It's not really too useful since there is a nice sysctl interface for this stuff. | |||
1997-08-16 | Allow DEFBADDYNAMICPORTS_TCP and DEFBADDYNAMICPORTS_UDP to be | Todd C. Miller | |
overridden via kernel config file. | |||
1997-08-16 | Just some more debugging info. | Angelos D. Keromytis | |
1997-08-09 | The list of tcp/udp ports not to allocate dynamically is now | Todd C. Miller | |
a bitmask configurable via sysctl([38]). The default values have not changed. If one wants to change the list it should be done early on in /etc/rc. | |||
1997-08-09 | SYN flood protection, by specifying | Angelos D. Keromytis | |
option TCPCOOKIE in the kernel config file. For very busy servers, consider raising the TCK_NFRIENDS value (it's currenly set to 16). Code originally from Matt Blaze and John Ioannidis. | |||
1997-08-04 | No more crashes because of this bug (double m_freem(), essentially). | Angelos D. Keromytis | |
1997-08-01 | when family is AF_UNSPEC, | flipk | |
ether_shost fields no longer get set for us. initialize them ourselves. | |||
1997-07-31 | some indentation stuff | Theo de Raadt | |
1997-07-28 | make it compile | Niels Provos | |
1997-07-28 | Make struct in_addr contain an in_addr_t since that's what | Todd C. Miller | |
in_addr_t is for (same basic type so we don't break anything). |