Now
netbsd-8 commitmail json YAML
src/distrib/sets/lists/debug/mi@1.216.2.5
/
diff
/
nxr@1.216.2.5
src/distrib/sets/lists/tests/mi@1.752.2.6 / diff / nxr@1.752.2.6
src/etc/mtree/NetBSD.dist.tests@1.147.2.2 / diff / nxr@1.147.2.2
src/sys/net/npf/npf_ctl.c@1.48.2.1 / diff / nxr@1.48.2.1
src/tests/net/ipsec/Makefile@1.6.2.2 / diff / nxr@1.6.2.2
src/tests/net/ipsec/algorithms.sh@1.4.2.2 / diff / nxr@1.4.2.2
src/tests/net/ipsec/natt_terminator.c@1.1.2.2 / diff / nxr@1.1.2.2
src/tests/net/ipsec/t_ipsec_natt.sh@1.1.2.2 / diff / nxr@1.1.2.2
src/tests/net/net_common.sh@1.18.2.3 / diff / nxr@1.18.2.3
src/usr.sbin/npf/npfctl/npfctl.c@1.53.6.1 / diff / nxr@1.53.6.1
src/distrib/sets/lists/tests/mi@1.752.2.6 / diff / nxr@1.752.2.6
src/etc/mtree/NetBSD.dist.tests@1.147.2.2 / diff / nxr@1.147.2.2
src/sys/net/npf/npf_ctl.c@1.48.2.1 / diff / nxr@1.48.2.1
src/tests/net/ipsec/Makefile@1.6.2.2 / diff / nxr@1.6.2.2
src/tests/net/ipsec/algorithms.sh@1.4.2.2 / diff / nxr@1.4.2.2
src/tests/net/ipsec/natt_terminator.c@1.1.2.2 / diff / nxr@1.1.2.2
src/tests/net/ipsec/t_ipsec_natt.sh@1.1.2.2 / diff / nxr@1.1.2.2
src/tests/net/net_common.sh@1.18.2.3 / diff / nxr@1.18.2.3
src/usr.sbin/npf/npfctl/npfctl.c@1.53.6.1 / diff / nxr@1.53.6.1
Pull up following revision(s) (requested by ozaki-r in ticket #357):
distrib/sets/lists/debug/mi: 1.228
distrib/sets/lists/tests/mi: 1.765-1.766
etc/mtree/NetBSD.dist.tests: 1.149
sys/net/npf/npf_ctl.c: 1.49
tests/net/ipsec/Makefile: 1.10
tests/net/ipsec/algorithms.sh: 1.6
tests/net/ipsec/natt_terminator.c: 1.1
tests/net/ipsec/t_ipsec_natt.sh: 1.1
tests/net/net_common.sh: 1.23-1.24
usr.sbin/npf/npfctl/npfctl.c: 1.54
Handle esp-udp for NAT-T
--
Fix npfclt reload on rump kernels
It fails because npfctl cannot get an errno when it calls ioctl to the (rump)
kernel; npfctl (libnpf) expects that an errno is returned via proplib,
however, the rump library of npf doesn't so. It happens because of mishandlings
of complicate npf kernel options.
PR kern/52643
--
Fix showing translated port (ntohs-ed twice wrongly)
--
Add test cases of NAT-T (transport mode)
A small C program is added to make a special socket (UDP_ENCAP_ESPINUDP)
and keep it to handle UDP-encapsulated ESP packets.
--
Add net/ipsec debug lib directory
--
Add ./usr/libdata/debug/usr/tests/net/ipsec
--
Stop using bpfjit
Because most architectures don't support it and npf still works without it.
distrib/sets/lists/debug/mi: 1.228
distrib/sets/lists/tests/mi: 1.765-1.766
etc/mtree/NetBSD.dist.tests: 1.149
sys/net/npf/npf_ctl.c: 1.49
tests/net/ipsec/Makefile: 1.10
tests/net/ipsec/algorithms.sh: 1.6
tests/net/ipsec/natt_terminator.c: 1.1
tests/net/ipsec/t_ipsec_natt.sh: 1.1
tests/net/net_common.sh: 1.23-1.24
usr.sbin/npf/npfctl/npfctl.c: 1.54
Handle esp-udp for NAT-T
--
Fix npfclt reload on rump kernels
It fails because npfctl cannot get an errno when it calls ioctl to the (rump)
kernel; npfctl (libnpf) expects that an errno is returned via proplib,
however, the rump library of npf doesn't so. It happens because of mishandlings
of complicate npf kernel options.
PR kern/52643
--
Fix showing translated port (ntohs-ed twice wrongly)
--
Add test cases of NAT-T (transport mode)
A small C program is added to make a special socket (UDP_ENCAP_ESPINUDP)
and keep it to handle UDP-encapsulated ESP packets.
--
Add net/ipsec debug lib directory
--
Add ./usr/libdata/debug/usr/tests/net/ipsec
--
Stop using bpfjit
Because most architectures don't support it and npf still works without it.