summaryrefslogtreecommitdiffstats
path: root/sbin/ipfw
Commit message (Expand)AuthorAgeFilesLines
* Dummynet has a limit of 100 slots queue size (or 1MB, if you givedwmalone2008-02-272-5/+32
* Add table/tablearg support to ipfw's nat.piso2008-02-242-10/+6
* -Fix display of nat range.piso2008-02-211-6/+5
* Fix display of multiple nat rules.piso2008-02-181-4/+4
* Instead of using a heuristic to decide whether to displayjulian2008-02-182-6/+14
* Add a note that ipfw states do not implicitly match ICMP error messages.yar2008-02-071-0/+6
* Hide ipfw internal data structures behind IPFW_INTERNAL rather thanrwatson2008-01-251-0/+2
* o Fix ipfw(8) command line parser bug: "ipfw nat 1 config if" ...maxim2008-01-201-0/+2
* Calculate p.fs.lookup_step correctly. This should prevent zeroing ofoleg2007-12-171-3/+3
* Polish this manual page a bit:danger2007-11-261-73/+110
* - New sysctl variable: net.inet.ip.dummynet.io_fastoleg2007-11-171-1/+19
* o Fix indentation. No functional changes.maxim2007-10-271-10/+10
* Change IPTOS_CE to IPTOS_ECN_CE.rpaulo2007-10-191-2/+2
* Comply with the removal of IPTOS_CE and IPTOS_ECT.rpaulo2007-10-191-2/+2
* o Fix a typo in ipfw table usage example.maxim2007-10-141-1/+1
* o Cosmetic: fix the issue when "ipfw(8) show" produces "not" twice:maxim2007-09-231-2/+2
* o Fix bug I introduced in the previous commit (ipfw set extention):maxim2007-08-261-3/+3
* Rename option IPSEC_FILTERGIF to IPSEC_FILTERTUNNEL.bz2007-08-051-2/+2
* Remove references to mpsafenet. This option no longer exists.csjp2007-08-041-14/+1
* o Make ipfw set more robust -- now it is possible:maxim2007-06-182-41/+131
* o Teach get_mac_addr_mask() to not silently accept incorrect MACmaxim2007-05-091-22/+38
* Add support for filtering on Routing Header Type 0 andbz2007-05-042-3/+25
* o Make ipfw(8) show rules with mac/mac-type options correctly.maxim2007-04-301-36/+17
* o Add missed w/space in the error message.maxim2007-04-171-1/+1
* Mention the nat command in the synopsis and in the action section.piso2007-02-151-0/+13
* Fix a parsing bug when specifying more than one address with dotted decimalmlaier2007-01-071-2/+8
* Summer of Code 2005: improve libalias - part 2 of 2piso2006-12-292-9/+1022
* Add a note about rule syntax compared to the shell used so users do not gettrhodes2006-10-091-0/+4
* When addr/mask examples are given, show both a host and networkkeramida2006-10-041-5/+6
* o Check for a required "pathname" argument presence.maxim2006-09-291-0/+2
* Markup fixes.ru2006-09-181-2/+4
* Check the length of the ipv4 and ipv6 address lists. It must be lessjhay2006-09-161-0/+4
* Use bzero() to clear the whole ipfw_insn_icmp6 structure in fill_icmp6types(),jhay2006-09-161-1/+1
* A pipe bandwidth of 10MBits/s should probablydwmalone2006-08-231-1/+2
* Regigle parens to try and get the intended affect. This should fix peopledwmalone2006-08-201-6/+6
* Fix typo.julian2006-08-201-1/+1
* comply with style policejulian2006-08-182-18/+19
* Allow ipfw to forward to a destination that is specified by a table.julian2006-08-172-11/+60
* Take IP_FIREWALL_EXTENDED out of the man page too.julian2006-08-171-8/+0
* Use the SLIST_NEXT macro instead of sle_next.stefanf2006-08-051-2/+2
* Specify correct argument range for tag/untag keywords.oleg2006-07-251-2/+2
* Add support of 'tablearg' feature for:oleg2006-06-152-80/+128
* Print dynamic rules for IPv6 as well.mlaier2006-06-021-5/+15
* Implement internal (i.e. inside kernel) packet tagging using mbuf_tags(9).oleg2006-05-242-9/+133
* For src/dest parsing take off the netmask before checking for AF withmlaier2006-05-141-15/+31
* Update manpage for net.inet6.ip6.fw.enable sysctl.mlaier2006-05-121-2/+4
* Amazing.. two screwups in one commit.julian2006-03-311-1/+2
* I can't believe that no-one noticed that I broke ipfw table deljulian2006-03-311-1/+2
* Revert `proto ip' back to the previous behavior. The kernel side ofume2006-03-052-5/+3
* oops, mismerge from working sources.. not only add new code,julian2006-02-141-2/+0
OpenPOWER on IntegriCloud