Page MenuHomeFreeBSD

libpfctl: Switch to pfctl_rule
ClosedPublic

Authored by kp on Apr 8 2021, 12:36 PM.
Tags
None
Referenced Files
Unknown Object (File)
Thu, Aug 6, 1:05 AM
Unknown Object (File)
Sat, Jul 11, 10:06 AM
Unknown Object (File)
Jul 5 2026, 3:01 AM
Unknown Object (File)
Jul 1 2026, 6:24 PM
Unknown Object (File)
Jun 30 2026, 2:14 AM
Unknown Object (File)
Jun 27 2026, 8:31 AM
Unknown Object (File)
Jun 22 2026, 3:41 PM
Unknown Object (File)
Jun 22 2026, 12:24 AM

Details

Summary

Stop using the kernel's struct pf_rule, switch to libpfctl's pfctl_rule.
Now that we use nvlists to communicate with the kernel these structures
can be fully decoupled.

MFC after: 4 weeks
Sponsored by: Rubicon Communications, LLC ("Netgate")

Diff Detail

Repository
rG FreeBSD src repository
Lint
Lint Not Applicable
Unit
Tests Not Applicable

Event Timeline

kp requested review of this revision.Apr 8 2021, 12:36 PM
glebius added a subscriber: glebius.
glebius added inline comments.
usr.sbin/bsnmpd/modules/snmp_pf/pf_snmp.c
1518

Do you plan to eventually hide struct pfioc_rule into libpfctl?

This revision is now accepted and ready to land.Apr 8 2021, 7:40 PM
usr.sbin/bsnmpd/modules/snmp_pf/pf_snmp.c
1518

I'm hoping to eventually delete it entirely.
One of the things I want to add to libpfctl is a convenience function to get the ticket, at which point I'll try to work out if I want to have a new struct to keep ticket, pool_ticket, anchor and anchor_call in.

This revision was automatically updated to reflect the committed changes.