This is a discussion on Re: ip-fil3.4.33pre2 includes which patches? within the IPFilter forums, part of the System Security and Security Related category; > > hi darren, > > maybe i missed an announcement on the list, but regarding > ftp://coombs.anu....
|
|||||||
| FAQ | Members List | Calendar | Search | Today's Posts | Mark Forums Read |
|
|||
|
>
> hi darren, > > maybe i missed an announcement on the list, but regarding > ftp://coombs.anu.edu.au/pub/net/ip-f....33pre2.tar.gz > (691 KB 11/25/2002 4:45:00 AM) > > what patches/fixes were introduced into pre2 vs pre1? I can tell you is what has been fixed since 3.4.32: * pass on messages moving through ipfilter when it is unloading itself on Solaris * add disabling of auto-detach when the module attaches on Solaris * compatibility patches for 'struct ifnet' changes on FreeBSD * implement a maximum for the number of entries in the NAT table (NAT_TABLE_MAX and ipf_nattable_max) * fix ipfstat -A * frsynclist() wasn't paying attention to all the places where interface names are, like it should. * fix where packet header pointers are pointing to after doing an ipf_pullup * fix comparing ICMP packets with established TCP state where only 8 bytes of header are returned in the ICMP error. > specifically, > does pre2 include the ICMP-through-state patch(es) which > you and guido collectively discussed here on the list? Yes. Darren |
![]() |
| Thread Tools | |
| Display Modes | |
|
|