From 678568e481a3fae7c641bf7fa9e8a100f417c803 Mon Sep 17 00:00:00 2001 From: cperciva Date: Thu, 2 Oct 2008 00:32:59 +0000 Subject: Default to ignoring potentially evil IPv6 Neighbor Solicitation messages. Approved by: so (cperciva) Approved by: re (kensmith) Security: FreeBSD-SA-08:10.nd6 Thanks to: jinmei, bz --- sys/netinet6/in6.h | 4 +++- 1 file changed, 3 insertions(+), 1 deletion(-) (limited to 'sys/netinet6/in6.h') diff --git a/sys/netinet6/in6.h b/sys/netinet6/in6.h index db0ab11..ffdb37f4 100644 --- a/sys/netinet6/in6.h +++ b/sys/netinet6/in6.h @@ -599,7 +599,9 @@ struct ip6_mtuinfo { /* New entries should be added here from current IPV6CTL_MAXID value. */ /* to define items, should talk with KAME guys first, for *BSD compatibility */ #define IPV6CTL_STEALTH 45 -#define IPV6CTL_MAXID 46 + +#define ICMPV6CTL_ND6_ONLINKNSRFC4861 47 +#define IPV6CTL_MAXID 48 #endif /* __BSD_VISIBLE */ /* -- cgit v1.1