You can clone with
HTTPS or Subversion.
pfkey_dump_sadb: when it get an error using sysctl,
mimic an error msg from keysock so that caller can process it correctly.
removed the needcopy arguement to ip6_setpktopts().
make it compilable on OpenBSD with MIP6 (CN) configuration.
check NULL on getifaddr result. PR 511 (for linux)
NULL is not (int)0
dccp from www.dccp.org
fixed an endian bug on fragment header scanning
Reported by Masahito Endo <firstname.lastname@example.org>
revoke privs after pidfile write
XXX use pidfile()
if sysctl(KEYCTL_DUMPSA) fails, try PF_KEY instead.
assume presense of getifaddrs
removed IPv6 inputopts.
2^n hash size is better in the kernel. perry
revisit logic on the use of spihash
use hash for spi-based lookup. it's stupid to go through all sah to f…
Be able to compile(install) on NetBSD
use strings instead of numerics for plog() calls. Michal Ludvig
NULL -> 0
described the RP selection algorithm between static-RP and BSR-based RP
PF for freebsd5. given the amount of compiler warnings i don't think
it will work.
IPSEC (more specifically, algorithms that use AES) does not work due to
conflicts with FAST_IPSEC changes.
fixed a log message
wrap long line
sync w/ latest
Punctuation fixes. wiz@netbsd
PF from OpenBSD-current 20030626
- catching up the changes of the nd timer logic.
be sure to the head of an addrlist in if_detach().
- fixed a bug comparing sav->key_auth and SADB_AALG_NONE.
inherit IPV6_V6ONLY from listening socket. NetBSD PR 21713
- remove periods in messages for yyerror(), which adds a trailing phrase
- use obsolete as an adjective
defer if_free_sadl() at the end of if_detach(), as many of routing table
manipulation code assumes that there's AF_LINK sockaddr. sync w/ netbsd-current
applyed RFC compliance patches from <email@example.com>.
only single proposal and single transform are allowed to be received
during phase 1 by a initiator.
allows the existence of down but enabled multicast interfaces
moved the location of pim6[sd]'s configuration file from
/usr/local/v6/etc/... to /etc/...
(just for the convenience of ports/pkgsrc maintainance)
- modify all spd entries for tunneling between a mobile node and a home
agent. this is needed when we want to encrypt all the tunneled traffic
between MN and HA.
- swap HAO and ip6src before processing AH/ESP/MH.
this is just a careless mistake when restructuring mip6 code.
set ai_protocol in hints to TCP. not sure if we will support SCTP rel…
with faithd, but if we do that, we'd do that with faithd.libevent not here.