summaryrefslogtreecommitdiff
path: root/usr.sbin
AgeCommit message (Collapse)Author
2014-12-29document ordering more explicitly;Ingo Schwarze
feedback and ok ajacoutot@ rpe@
2014-12-29re-add missing space in confirm prompt that got lost in -r1.18Jasper Lievisse Adriaanse
ok espie@
2014-12-28Change the default example from "listen on egress" to "listen on *".Reyk Floeter
Listening on the egress group only works if you have a default route; this confused some people.
2014-12-27prepare things slightly further, FwUpdate still not active...Marc Espie
2014-12-27make it at least work a wee little bit.Marc Espie
2014-12-27zap trailing whitespace;Jason McIntyre
2014-12-27Specialisation of PkgAdd to do fw_update, not yet finishedMarc Espie
okay to import deraadt@
2014-12-26Document forward to in protocols.Sebastian Benoit
2014-12-25subtraction of two void * is not well defined, plus two void * can be apartOtto Moerbeek
more than an int can hold; ok krw@ deraadt@ and tedu@ (by implication)
2014-12-24bump versionEric Faurot
2014-12-24Correctly fallback to PLAIN if opportunistics TLS fails during TLS handshake.Eric Faurot
fix by Stefan Sieg ok gilles
2014-12-24Implement some kind ordering in the startup of package script daemons.Antoine Jacoutot
'rcctl order ...' will prepend the daemon(s) given as argument to the pkg_scripts line (it can be all daemons, some, or just one). Without argument, it'll display the current order. While here, drop a couple of examples from the man page to only leave the most interesting one. ok schwarze@ rpe@ (with tweaks) jasper@ robert@ sthen@
2014-12-24recheck list for non emptyness *after* filtering obsolete packages.Marc Espie
2014-12-24missing includeEric Faurot
2014-12-23pf now supports source-hash and random with tables so we can allow itReyk Floeter
in redirections. Thanks for help and input from jsg and yasuoka who reminded me to dig out and update these old diffs for pf and relayd. ok jsg@
2014-12-23Remove function mouse_map. This function is redundant.Alexandr Shadchin
ok zhuk@
2014-12-23Consistency: put variables between curly braces.Antoine Jacoutot
No functional change intended.
2014-12-23tweak meta-info checking a bit.Marc Espie
- remove IsLink tests, there's no reason to treat them specially. - files are forced to root, no need to allow for bin anymore. - force libraries to be not executable, if there's no explicit @mode annotation
2014-12-23the kvm database only needs to be readable by kmem group. make it so.Ted Unangst
2014-12-22when we run into real errors, the progress meter is distracting, so haveMarc Espie
a method ->disable that does something nice to the display, and stops the progress meter right before we display our first real error.
2014-12-22Now does not need to be initialized event.value.Alexandr Shadchin
This not used anymore. ok deraadt@
2014-12-22Out out you evil network daemon.Florian Obser
OK deraadt@ some time ago
2014-12-21Cleanup - remove event WSCONS_EVENT_WSMOUSED_SLEEP, WSCONS_EVENT_WSMOUSED_CLOSE.Alexandr Shadchin
Do not need it now. ok mpi@
2014-12-21Stop pulling in <arpa/inet.h> or <arpa/nameser.h> when unnecessary.Philip Guenther
*Do* pull it in when in_{port,addr}_h is needed and <netinet/in.h> isn't. ok reyk@
2014-12-19don't print vnodes if we didn't read themTed Unangst
2014-12-191. -T (totalflag) requires nlist too.Ted Unangst
2. If we can't read a vnode, there's no way LIST_NEXT is going to be meaningful. 3. set numvnodes before looping in case we return early. getting better, but still not all fixed
2014-12-18Merge in some commits from upstream..Brad Smith
- Fix that failure to add tcp to tcp base does not leak the socket. - Fixes for wildcard addition and deletion, speedup for some cases. - Fix that queries for noname CH TXT are REFUSED instead of nodata. - Fix #616: retry xfer for zones with no content after command. - Fix that expired zones stay expired after a server restart. - RFC 7344: CDS and CDNSKEY (read in). ok sthen@
2014-12-18an hex -> a hex;Jason McIntyre
2014-12-18Update relayd to use siphash instead of sys/hash. The source-hash,Reyk Floeter
loadbalance and hash modes use a random key by default that can be forced to be a static key with a new configuration argument. With input from Max Fillinger. ok tedu@
2014-12-18two more uses of siphash. better hash for ipv4. maybe not needed for rbtreeTed Unangst
hint, but still pretty. ok deraadt
2014-12-18simple to use siphash here. ok deraadtTed Unangst
2013-11-26import NSD 4.0.0, tests from Dorian Büttner, Patrik Lundin, requested by ↵Stuart Henderson
brad@
2010-01-15NSD v3.2.4Jakob Schlyter
2014-12-18Document * and :: to listen on all IPv4 or IPv6 addresses.Reyk Floeter
2014-12-18Accept * as an alias for the default ipv4 listen address.Reyk Floeter
OK jsg@
2014-12-18"tcp nodelay" shouldn't be discussing relaying SSH; this was a remnantReyk Floeter
from relayd.conf.5. From Ross L Richardson
2014-12-17the easier way to put a buffer on the stack is to put it on the stack,Ted Unangst
not with alloca(). found by dickman; ok kettenis
2014-12-17Use log_warnx() not log_warn() for mail loop warning since errnoTodd C. Miller
is not set. OK gilles@
2014-12-17Add missing flag in the description field.Reyk Floeter
2014-12-16Replace setpgrp(0, getpid()) with setpgid(0, 0). OK deraadt@ tedu@Todd C. Miller
2014-12-14these are no longer used, removeGilles Chehade
2014-12-13Give the mop suite the ability to process alpha Elf64 files and create mopMiod Vallat
alpha images of them.
2014-12-13Add DKIM signing example based on eric@'s asiabsdcon slidesTodd C. Miller
OK gilles@ jmc@
2014-12-12convert some hash tables (the easy ones) to siphash. ok benno.Ted Unangst
2014-12-12Like previously done in relayd, change the keyword "ssl" to "tls" toReyk Floeter
reflect reality. OK benno@
2014-12-12Change the keyword "ssl" to "tls" to reflect reality since weReyk Floeter
effectively disabled support for the SSL protocols. SSL remains a common term describing SSL/TLS, there is some controvery about this change, and the name really doesn't matter, but I feel confident about it now. (btw., sthen@ pointed out some historical context: http://tim.dierks.org/2014/05/security-standards-and-name-changes-in.html) OK benno@, with input from tedu@
2014-12-11When scanning backwards for the last dot in a filename,Ingo Schwarze
stop at the '/' marking the beginning of the filename. This allows to configure a Content-Type for a filename without a dot. OK reyk@
2014-12-11merge conflictsBrad Smith
2014-12-11update to Unbound 1.5.1, ok sthen@Brad Smith
2014-12-10If default file descriptors (0, 1, 2) have to be assigned to /dev/null,Tobias Stoeckmann
don't accidentally assign 3, too. ok millert, with input by and ok bluhm