--- - branch: netbsd-8 date: Fri Nov 17 20:43:11 UTC 2017 files: - new: 1.216.2.5 old: 1.216.2.4 path: src/distrib/sets/lists/debug/mi pathrev: src/distrib/sets/lists/debug/mi@1.216.2.5 type: modified - new: 1.752.2.6 old: 1.752.2.5 path: src/distrib/sets/lists/tests/mi pathrev: src/distrib/sets/lists/tests/mi@1.752.2.6 type: modified - new: 1.147.2.2 old: 1.147.2.1 path: src/etc/mtree/NetBSD.dist.tests pathrev: src/etc/mtree/NetBSD.dist.tests@1.147.2.2 type: modified - new: 1.48.2.1 old: '1.48' path: src/sys/net/npf/npf_ctl.c pathrev: src/sys/net/npf/npf_ctl.c@1.48.2.1 type: modified - new: 1.18.2.3 old: 1.18.2.2 path: src/tests/net/net_common.sh pathrev: src/tests/net/net_common.sh@1.18.2.3 type: modified - new: 1.6.2.2 old: 1.6.2.1 path: src/tests/net/ipsec/Makefile pathrev: src/tests/net/ipsec/Makefile@1.6.2.2 type: modified - new: 1.4.2.2 old: 1.4.2.1 path: src/tests/net/ipsec/algorithms.sh pathrev: src/tests/net/ipsec/algorithms.sh@1.4.2.2 type: modified - new: 1.1.2.2 old: '0' path: src/tests/net/ipsec/natt_terminator.c pathrev: src/tests/net/ipsec/natt_terminator.c@1.1.2.2 type: added - new: 1.1.2.2 old: '0' path: src/tests/net/ipsec/t_ipsec_natt.sh pathrev: src/tests/net/ipsec/t_ipsec_natt.sh@1.1.2.2 type: added - new: 1.53.6.1 old: '1.53' path: src/usr.sbin/npf/npfctl/npfctl.c pathrev: src/usr.sbin/npf/npfctl/npfctl.c@1.53.6.1 type: modified id: 20171117T204311Z.396abd632a2e8808a47696ddcc8f3f55233e6558 log: "Pull up following revision(s) (requested by ozaki-r in ticket #357):\n\tdistrib/sets/lists/debug/mi: 1.228\n\tdistrib/sets/lists/tests/mi: 1.765-1.766\n\tetc/mtree/NetBSD.dist.tests: 1.149\n\tsys/net/npf/npf_ctl.c: 1.49\n\ttests/net/ipsec/Makefile: 1.10\n\ttests/net/ipsec/algorithms.sh: 1.6\n\ttests/net/ipsec/natt_terminator.c: 1.1\n\ttests/net/ipsec/t_ipsec_natt.sh: 1.1\n\ttests/net/net_common.sh: 1.23-1.24\n\tusr.sbin/npf/npfctl/npfctl.c: 1.54\nHandle esp-udp for NAT-T\n--\nFix npfclt reload on rump kernels\nIt fails because npfctl cannot get an errno when it calls ioctl to the (rump)\nkernel; npfctl (libnpf) expects that an errno is returned via proplib,\nhowever, the rump library of npf doesn't so. It happens because of mishandlings\nof complicate npf kernel options.\nPR kern/52643\n--\nFix showing translated port (ntohs-ed twice wrongly)\n--\nAdd test cases of NAT-T (transport mode)\nA small C program is added to make a special socket (UDP_ENCAP_ESPINUDP)\nand keep it to handle UDP-encapsulated ESP packets.\n--\nAdd net/ipsec debug lib directory\n--\nAdd ./usr/libdata/debug/usr/tests/net/ipsec\n--\nStop using bpfjit\nBecause most architectures don't support it and npf still works without it.\n" module: src subject: 'CVS commit: [netbsd-8] src' unixtime: '1510951391' user: snj