Commit message (Collapse) | Author | Age | Files | Lines | |
---|---|---|---|---|---|
* | can not -> cannot. | ru | 2002-08-13 | 1 | -1/+1 |
| | |||||
* | mdoc(7) police: canonize FreeBSD in e-mail address. | ru | 2002-08-13 | 1 | -1/+1 |
| | |||||
* | The .Nm utility | charnier | 2002-07-06 | 1 | -2/+4 |
| | |||||
* | Update my email address. | archie | 2002-07-03 | 1 | -1/+1 |
| | |||||
* | I don't know what the MAINTAINER means in src/ part of FreeBSD. | ru | 2002-04-12 | 1 | -2/+0 |
| | | | | | | | | | I'll still be overseeing the changes that go into natd(8) and will maintain it the way I see it, non-preventing for the rest of developers. I will re-ask for the MAINTAINER bit if the ${MAINTAINER} gets defined. | ||||
* | Back out part of the revision 1.2 changes -- sendto(2) can | ru | 2002-01-15 | 1 | -73/+28 |
| | | | | | | | | | | | | not return ENOBUFS for unreliable protocols like divert. This should fix an issue when natd(8) keeps spamming already full dummynet(4) queues with the same packet forever. Spotted by: chkno@dork.com Explained by: luigi Reviewed by: Ari Suutari <ari.suutari@syncrontech.com> MFC after: 2 weeks | ||||
* | s/sysctl -w/sysctl/ | ru | 2001-12-11 | 1 | -1/+1 |
| | |||||
* | Default to WARNS=2. | obrien | 2001-12-04 | 1 | -1/+1 |
| | | | | | | Binary builds that cannot handle this must explicitly set WARNS=0. Reviewed by: mike | ||||
* | Make -log_ipfw_denied active by default with -verbose. | ru | 2001-11-27 | 2 | -1/+8 |
| | | | | Discussed with: phk | ||||
* | Fixed (local) style bugs in previous revision. | ru | 2001-11-27 | 2 | -6/+10 |
| | |||||
* | Do not uselessly whine in syslog about packets denied by ipfw rules. | phk | 2001-10-31 | 2 | -3/+19 |
| | | | | | | | | | Set 'log_ipfw_denied' option if you want the old behaviour. PR: 30255 Submitted by: Flemming "F3" Jacobsen <fj@batmule.dk> Reviewed by: phk MFC after: 4 weeks | ||||
* | mdoc(7) police: | ru | 2001-08-07 | 1 | -6/+4 |
| | | | | | | | Avoid using parenthesis enclosure macros (.Pq and .Po/.Pc) with plain text. Not only this slows down the mdoc(7) processing significantly, but it also has an undesired (in this case) effect of disabling hyphenation within the entire enclosed block. | ||||
* | mdoc(7) police: removed HISTORY info from the .Os call. | ru | 2001-07-10 | 1 | -1/+1 |
| | |||||
* | Revert the previous commit on objection from the maintainer. I | joe | 2001-06-21 | 1 | -3/+2 |
| | | | | | | missed that natd has a -v option that will give similar functionality. Requested by: ru | ||||
* | When reporting that a packet can't be written back, usually because | joe | 2001-06-21 | 1 | -2/+3 |
| | | | | | | | of a restrictive firewall rule, also report detail on the packet that caused the failure. MFC after: 3 days | ||||
* | mdoc(7) police: normalize .Nd. | ru | 2001-04-18 | 1 | -1/+1 |
| | |||||
* | - Backout botched attempt to introduce MANSECT feature. | ru | 2001-03-26 | 1 | -0/+1 |
| | | | | - MAN[1-9] -> MAN. | ||||
* | Set the default manual section for sbin/ to 8. | ru | 2001-03-20 | 1 | -1/+0 |
| | |||||
* | mdoc(7) police: split punctuation characters + misc fixes. | ru | 2001-02-01 | 1 | -2/+2 |
| | |||||
* | mdoc(7) police: use the new features of the Nm macro. | ru | 2000-11-20 | 1 | -5/+5 |
| | |||||
* | Describe -deny_incoming better, highlight some keywords, | ru | 2000-11-16 | 1 | -22/+57 |
| | | | | add myself to the AUTHORS section. | ||||
* | more removal of trailing periods from SEE ALSO. | ben | 2000-11-15 | 1 | -1/+1 |
| | |||||
* | Suggest looking at rc.conf(5) on how to start natd(8) during boot. | ru | 2000-07-17 | 1 | -0/+3 |
| | | | | Submitted by: dcs | ||||
* | Don't call warn() with no format string. | kris | 2000-07-10 | 1 | -1/+1 |
| | |||||
* | "Ease understanding" of how -punch_fw works. | ru | 2000-06-29 | 1 | -9/+11 |
| | | | | Reviewed by: sheldonh | ||||
* | Added new option (-punch_fw) which allows to `punch holes' | ru | 2000-06-27 | 2 | -2/+47 |
| | | | | | | | in the ipfirewall(4) for incoming FTP/IRC DCC connections. Submitted by: Rene de Vries <rene@canyon.demon.nl> Rewritten by: ru | ||||
* | - mdoc(7) style cleanup | ru | 2000-06-27 | 1 | -276/+300 |
| | | | | - new version of security note from alex. | ||||
* | Back out both previous commits. | alex | 2000-06-26 | 1 | -200/+168 |
| | | | | | | | | | | | | The first one got screwed up by me because of rev 1.33, which was incorrectly merged into my patches by myself, and so Ruslan (maintainer) asked me to back them out. Ruslan was ok with the second one, but since it needs rework, it'll be readded later, when it doesn't conflict with the backout of the first one. Pointy hat: alex Beer on next meeting: ru | ||||
* | Add note about security concerns w/o a firewall but other machines | alex | 2000-06-26 | 1 | -0/+8 |
| | | | | | | | | on your LAN to the "RUNNING NATD" introduction. In a different way requested by: PR: 18802 Submitted by: Zachary K Drew <drew0054@tc.umn.edu> | ||||
* | mdoc style cleanup. | alex | 2000-06-26 | 1 | -168/+192 |
| | | | | Reviewed by: sheldonh | ||||
* | Remove ``pptpalias'' since this is now done transparently by libalias(3). | ru | 2000-06-20 | 2 | -51/+1 |
| | |||||
* | Remove unused parameter. | ru | 2000-06-16 | 1 | -6/+6 |
| | |||||
* | Fix a small grammar nit, with the maintainer's implicit approval. | sheldonh | 2000-05-22 | 1 | -3/+3 |
| | |||||
* | Add new option (-target_addr) to control how to deal with incoming packets | ru | 2000-05-18 | 2 | -1/+34 |
| | | | | | | not associated with any pre-existing link. Submitted by: brian | ||||
* | New option: -redirect_proto. | ru | 2000-05-03 | 2 | -1/+91 |
| | |||||
* | Fixes a potential buffer overflow with the command line arguments. | joe | 2000-04-30 | 1 | -7/+11 |
| | | | | | Submitted by: Mike Heffner <spock@techfour.net> Submitted on: audit@freebsd.org | ||||
* | Load Sharing using IP Network Address Translation (RFC 2391, LSNAT). | ru | 2000-04-27 | 2 | -18/+106 |
| | |||||
* | Correct Charles Mott's email address | brian | 2000-04-02 | 2 | -7/+4 |
| | | | | Requested by: cmott@scientech.com | ||||
* | Remove single-space hard sentence breaks. These degrade the quality | sheldonh | 2000-03-01 | 1 | -12/+23 |
| | | | | | of the typeset output, tend to make diffs harder to read and provide bad examples for new-comers to mdoc. | ||||
* | Suggest ppp -nat, not ppp -alias | brian | 2000-02-26 | 1 | -1/+1 |
| | |||||
* | Remove the config file line length restriction. | ru | 2000-02-25 | 1 | -13/+10 |
| | | | | | | PR: 16900 Reviewed by: "Crist J. Clark" <cjclark@home.com>, jkh Approved by: jkh | ||||
* | Now that kernel is capable of notifying user processes about | ru | 2000-01-25 | 1 | -8/+6 |
| | | | | | | | the interface MTU change (src/sys/net/if_sl.c,v 1.83), track interface MTU with -dynamic option as well. PR: 15494 | ||||
* | Minor grammar fix. | mpp | 1999-10-30 | 1 | -1/+1 |
| | |||||
* | ioctl -> sysctl for interface address changes. | ru | 1999-10-13 | 1 | -74/+83 |
| | | | | | PR: 14169 Reviewed by: Ari Suutari <ari@suutari.iki.fi> | ||||
* | Fixed the description of how packets re-enter IP firewall filter. | ru | 1999-10-06 | 1 | -3/+6 |
| | | | | Suggested by: Ari Suutari <ari@suutari.iki.fi> | ||||
* | Do not defer setting of the aliasing address from | ru | 1999-09-28 | 1 | -19/+15 |
| | | | | | | interface name if not operating in dynamic mode. Reviewed by: Ari Suutari <ari@suutari.iki.fi> | ||||
* | `permanent_link' is obsolete; update examples. | ru | 1999-09-13 | 1 | -9/+7 |
| | |||||
* | Add Ari Suutari as a maintainer. | ru | 1999-09-13 | 1 | -0/+3 |
| | | | | Approved by: Ari Suutari <ari@suutari.iki.fi> | ||||
* | Config file parser changes: | ru | 1999-09-07 | 2 | -9/+15 |
| | | | | | | | - Trailing spaces and empty lines are ignored. - A `#' sign will mark the remaining of the line as a comment. Reviewed by: Ari Suutari <ari@suutari.iki.fi> | ||||
* | Allow signals to interrupt system calls. | ru | 1999-09-02 | 1 | -1/+3 |
| | | | | | | | | Remove redundant signal() call. PR: 6676 Submitted by: luoqi Reviewed by: Ari Suutari <ari@suutari.iki.fi> |