On Fri, May 12, 2006 at 01:57:32PM +0900, Hajimu UMEMOTO wrote: > Hi, > > >>>>> On Fri, 12 May 2006 04:41:28 +0000 (UTC) > >>>>> Max Laier <[EMAIL PROTECTED]> said: > > mlaier> mlaier 2006-05-12 04:41:28 UTC > > mlaier> Modified files: > mlaier> sys/netinet ip_fw.h ip_fw2.c ip_fw_pfil.c ip_input.c > mlaier> Log: > mlaier> Reintroduce net.inet6.ip6.fw.enable sysctl to dis/enable the ipv6 > processing > mlaier> seperately. Also use pfil hook/unhook instead of keeping the check > > It seems net.inet6.ip6.fw.enable is conflict between ipfw and ip6fw, > now. I think that it prevent users from using ipfw for IPv4 and ip6fw > for IPv6.
This is a preparatory commit for removal of IP6FW. We're aware that IPFW isn't a perfect replacement for IP6FW, but we've got to get the number of firewalls down to something reasonable and this has been on the list since last BSDCan. -- Brooks -- Any statement of the form "X is the one, true Y" is FALSE. PGP fingerprint 655D 519C 26A7 82E7 2529 9BF0 5D8E 8BE9 F238 1AD4
pgpe2TlDv2qqQ.pgp
Description: PGP signature
