| Commit message (Collapse) | Author | Age | Files | Lines |
|
|
|
| |
already had in my tree but didn't want to commit.
|
|
|
|
|
| |
create it. Also specify protocol v1/v2 in case people wonder why we
generate two RSA keys.
|
|
|
|
|
|
|
|
|
| |
prevent the interfaces from being initialized by /etc/rc.network6
wrongly. So, you can explicitly initialize the interfaces by
/etc/pccard_ether.
With previous rc.network6, if you specify pccardd_flags="-z",
net.inet6.ip6.accept_rtadv was wronly set to 0, then RA was not
accepted.
|
|
|
|
|
|
|
|
|
| |
was apparently smoking something when I committed the last fix, because as
ume was kindly enough to set me straight on, amd *will* start with no
arguments at all, as long as there is an /etc/amd.conf file for it to
read. What it won't do is start with *just* -p.
In any case, now it's fixed.
|
| |
|
|
|
|
|
|
|
|
| |
only doing ipnat(8). Go back to using $ipfilter_active, but turn off
$ipfilter_active when loading ipl.ko has failed.
Submitted by: devet@devet.org (Arjan de Vet)
MFC after: 3 days
|
|
|
|
| |
mibs whose values are not already what is specified in sysctl.conf.
|
|
|
|
|
|
|
|
| |
conf file, or command line options. I brought this up in PR 12432,
which (ironically) obrien assigned to me after I became a committer. :)
PR: conf/12432
Submitted by: Me
|
|
|
|
|
|
|
| |
$ipfilter_active. $ipfilter_enable is set to "NO" if modules fail to
load, and $ipfilter_active can be "YES" when we are not using ipf(8).
MFC after: 3 days
|
| |
|
|
|
|
| |
Since I cannot answer that question, make it.
|
| |
|
|
|
|
|
| |
"filter sync'd" in the middle of the boot output if IPFilter is
enabled, but does not hide any potential errors, which go to stderr.
|
|
|
|
|
|
| |
is mounted.
Submitted by: rizzo
|
|
|
|
|
|
|
|
| |
and looks like no other Unix diskless configuration I've ever seen.
Thus allow a more traditional /etc.
Note, the use of an MFS /var should also be settable.
Otherwise installing ports(packages) is just a total PITA.
|
|
|
|
|
|
|
|
|
|
|
|
|
| |
when running natd(8) out of the rc-files. It is perfectly valid for
the interface or alias address to be set in a natd(8) configuration
file, not on the command line. Also, loosen up the restrictions on
identifying an IP address argument in 'natd_interface.'
Fix the documentation, rc.conf(5), to reflect this change.
Take the bogus default for 'natd_interface' out of /etc/defaults/rc.conf.
MFC after: 3 days
|
|
|
|
|
|
|
|
|
| |
values at all if they are not purposefully set. What if the
administrator messed with them in /etc/sysctl.conf? We don't want to
overwrite them.
If 'log_in_vain' is zero, do not force the issue. If it is non-zero,
set it.
|
|
|
|
|
|
|
|
| |
This change was submitted to the freebsd-audit mailing list for review
but received no feedback. Hindsight-enabled reviews are welcome.
PR: conf/31358
Submitted: Thomas Quinot <thomas@cuivre.fr.eu.org>
|
|
|
|
|
|
|
|
|
|
| |
Try this out in -CURRENT, MFC, and then consider dropping the
'log_in_vain' knob all together. It really is something for
sysctl.conf(5).
PR: bin/32953
Reviewed by: -bugs discussion
MFC after: 1 week
|
|
|
|
| |
to be wrapped around 60, others around 40 columns.
|
|
|
|
| |
o Improve line-wrapping of another comment for consistency.
|
|
|
|
|
|
|
|
| |
md device and file system creation occurs *after* mtree is run, and
as such an /var/tmp/* or /tmp/* entries will be under the mountpoint
(or fail) rather than appearing in the md filesystems. This prevents
the creation of vi.recover, and might affect other localizations that
rely on the mtree calls affecting these directories.
|
|
|
|
|
| |
made to copy the NFS-mounted on to /tmp/etc, instead, it is populated
entirely from /conf/default, then overriden from /conf/IP.
|
|
|
|
| |
MFC after: 2 days
|
|
|
|
|
|
|
|
|
| |
so swap the order.
Also allow rpc.lockd and rpc.statd to be turned on if nfsclient is
enabled. They are needed to provide client side locking support.
PR: conf/27811
|
| |
|
|
|
|
|
|
|
|
|
|
|
| |
kernel TCP timer code: rather than checking for tcp_keepalive being
set to "YES", check for "NO" and turn off keepalives if the variable
is set in that manner.
o Note: eventually, it would make sense to remove this variable from
rc.conf management, and instead rely on sysctl.conf. In fact, this
is probably true of a number of rc.conf variables whose sole aim
is to drive the setting of sysctls at boot time.
|
|
|
|
|
|
|
|
|
|
| |
expansion in the rc-scripts.
PR: 32552
Submitted by: Gleb Smirnoff <glebius@rinet.ru>
Approved by: ru
Obtained from: ru
MFC after: 1 day
|
|
|
|
| |
using the default of 0755.
|
| |
|
|
|
|
|
|
|
|
|
| |
to get it all right, allowing ipnat to be enabled independantly of ipfilter
in rc.conf (among other things).
PR: multiple
Submitted by: Arjan de Vet <devet@devet.org>
Reviewed by: Giorgos Keramidas <keramida@FreeBSD.org>
|
|
|
|
|
|
| |
PR: conf/31366
Submitted by: gshapiro
MFC after: 1 week
|
|
|
|
| |
printf(1) can be dropped from the system shell as a shell builtin.
|
|
|
|
| |
expansion instead.
|
|
|
|
|
|
|
|
| |
continuation lines, extra whitespace, and to use the last matching
line in the file. This syncs the host.conf generation with how
the nsswitch.conf is parsed.
Only print " host.conf" instead of a multi-line message, since this
happens on every boot.
|
|
|
|
|
|
|
|
| |
- if nsswitch.conf exists, host.conf is auto-generated for compatibility
with legacy applications and libraries.
- if host.conf exists but nsswitch.conf does not, nsswitch.conf is auto-
generated as usual.
|
|
|
|
|
|
|
| |
matched. Moification on PR to handle ipnat not being dependant on
ipfilter_enable
PR: 22859
|
|
|
|
|
|
| |
be set to "yes"
PR: 25223
|
|
|
|
| |
PR: 27070
|
|
|
|
| |
kldload'ing the appropriate modules before enabling the service.
|
|
|
|
|
| |
Submitted by: Harti Brandt <brandt@fokus.gmd.de>
MFC after: 2 weeks
|
|
|
|
|
|
| |
obsolete.
Submitted by: Gordon Tetlow <gordont@gnf.org>
|
|
|
|
| |
interfaces at boot.
|
|
|
|
|
| |
to the client section. Turn off nfsiod, it no longer exists (now just
kthreads). I need revisit nfsiod so that we have an argument passthrough.
|
|
|
|
|
| |
variable names. There were minor differences in both cases, which were
needlessly confusing and inconsistent.
|
| |
|
|
|
|
|
|
|
|
|
|
| |
is required into rc.network.
Person failed to use a real name so both email addresses from PR included
(Sent was different to From).
PR: 22998
Submitted by: dl@leo.org/spock@empire.trek.org
|
|
|
|
| |
may be started at boot for kerberos servers.
|
|
|
|
|
| |
Suggested by: matusita@jp.FreeBSD.org
MFC after: 1 week
|
|
|
|
|
| |
Submitted by: sakane@kame.net
- Avoid to select lo0 or faith for a default interface.
|