diff options
-rw-r--r-- | conf.default/config.xml | 10 | ||||
-rw-r--r-- | etc/inc/globals.inc | 2 |
2 files changed, 12 insertions, 0 deletions
diff --git a/conf.default/config.xml b/conf.default/config.xml index 024a3d7..9e1d957 100644 --- a/conf.default/config.xml +++ b/conf.default/config.xml @@ -56,6 +56,16 @@ <value>default</value> </item> <item> + <descr><![CDATA[Enable privacy settings for IPv6 (RFC 4941)]]></descr> + <tunable>net.inet6.ip6.use_tempaddr</tunable> + <value>default</value> + </item> + <item> + <descr><![CDATA[Prefer privacy addresses and use them over the normal addresses]]></descr> + <tunable>net.inet6.ip6.prefer_tempaddr</tunable> + <value>default</value> + </item> + <item> <descr><![CDATA[Generate SYN cookies for outbound SYN-ACK packets]]></descr> <tunable>net.inet.tcp.syncookies</tunable> <value>default</value> diff --git a/etc/inc/globals.inc b/etc/inc/globals.inc index af93de5..6315a84 100644 --- a/etc/inc/globals.inc +++ b/etc/inc/globals.inc @@ -125,6 +125,8 @@ $sysctls = array("net.inet.ip.portrange.first" => "1024", "net.inet.tcp.drop_synfin" => "1", "net.inet.ip.redirect" => "1", "net.inet6.ip6.redirect" => "1", + "net.inet6.ip6.use_tempaddr" => "0", + "net.inet6.ip6.prefer_tempaddr" => "0", "net.inet.tcp.syncookies" => "1", "net.inet.tcp.recvspace" => "65228", "net.inet.tcp.sendspace" => "65228", |