diff options
author | luigi <luigi@FreeBSD.org> | 2000-02-10 14:19:53 +0000 |
---|---|---|
committer | luigi <luigi@FreeBSD.org> | 2000-02-10 14:19:53 +0000 |
commit | 4c77286bf09ec7e3e9e6c2cf94be721f58ad3e72 (patch) | |
tree | d61129ddc9489edd58335a56f9cfcd8f74f5c301 /sys/netinet | |
parent | 0a7657b3329286c1adb3f581bd671054fb7b0636 (diff) | |
download | FreeBSD-src-4c77286bf09ec7e3e9e6c2cf94be721f58ad3e72.zip FreeBSD-src-4c77286bf09ec7e3e9e6c2cf94be721f58ad3e72.tar.gz |
Support the net.inet.ip.fw.enable variable, part of
the recent ipfw modifications.
Approved-by: jordan
Diffstat (limited to 'sys/netinet')
-rw-r--r-- | sys/netinet/ip_input.c | 2 | ||||
-rw-r--r-- | sys/netinet/ip_output.c | 4 |
2 files changed, 3 insertions, 3 deletions
diff --git a/sys/netinet/ip_input.c b/sys/netinet/ip_input.c index df9176f..2450a1d 100644 --- a/sys/netinet/ip_input.c +++ b/sys/netinet/ip_input.c @@ -390,7 +390,7 @@ iphack: ip = mtod(m = m1, struct ip *); } #endif - if (ip_fw_chk_ptr) { + if (fw_enable && ip_fw_chk_ptr) { #ifdef IPFIREWALL_FORWARD /* * If we've been forwarded from the output side, then diff --git a/sys/netinet/ip_output.c b/sys/netinet/ip_output.c index 61c8432..52350e3 100644 --- a/sys/netinet/ip_output.c +++ b/sys/netinet/ip_output.c @@ -176,7 +176,7 @@ ip_output(m0, opt, ro, flags, imo) /* * the packet was already tagged, so part of the * processing was already done, and we need to go down. - * * Get parameters from the header. + * Get parameters from the header. */ rule = (struct ip_fw_chain *)(m->m_data) ; opt = NULL ; @@ -462,7 +462,7 @@ sendit: /* * Check with the firewall... */ - if (ip_fw_chk_ptr) { + if (fw_enable && ip_fw_chk_ptr) { struct sockaddr_in *old = dst; off = (*ip_fw_chk_ptr)(&ip, |