Return to 75.html CVS log | Up to [local] / www |
version 1.24, 2024/03/26 08:51:51 | version 1.25, 2024/03/29 20:30:56 | ||
---|---|---|---|
|
|
||
<li>The following changes were made to the <a | <li>The following changes were made to the <a | ||
href="https://man.openbsd.org/pf.4">pf(4)</a> firewall: | href="https://man.openbsd.org/pf.4">pf(4)</a> firewall: | ||
<ul> | <ul> | ||
<li>tcpdump on <a | <li>tcpdump on <a | ||
href="https://man.openbsd.org/pflog.4">pflog(4)</a> interface | href="https://man.openbsd.org/pflog.4">pflog(4)</a> interface shows | ||
shows packets dropped by the default rule with the "block" | packets dropped by the default rule with the "block" action. Although | ||
action. Although the default rules is a "pass" rule, it | the default rules is a "pass" rule, it blocks malformed packets. Now | ||
blocks malformed packets. Now this is correctly logged. | this is correctly logged. | ||
<li>Adjustments to keep up firewall aware of MP related changes | <li>Adjustments to keep up firewall aware of MP related changes in | ||
in network stack. | the network stack. | ||
<li>Fix handling of multiple <code>-K</code>(<code>-k</code>) options in | <li>Fix handling of multiple <code>-K</code>(<code>-k</code>) options in | ||
<a href="https://man.openbsd.org/pfctl.8">pfctl(8)</a>, so behavior | <a href="https://man.openbsd.org/pfctl.8">pfctl(8)</a>, so behavior | ||
matches what's described in manual. | matches what's described in manual. | ||
<li>Let <a href="https://man.openbsd.org/pfctl.8">pfctl(8)</a> to show | <li>Make <a href="https://man.openbsd.org/pfctl.8">pfctl(8)</a> show | ||
all tables in all anchors (<code>pfctl -a "*" -sT</code>). | all tables in all anchors with <code>pfctl -a "*" -sT</code>. | ||
</ul> | </ul> | ||
<li>Routing daemons and other userland network improvements: | <li>Routing daemons and other userland network improvements: |