Changeset View
Changeset View
Standalone View
Standalone View
sys/conf/NOTES
Show First 20 Lines • Show All 961 Lines • ▼ Show 20 Lines | |||||
# out of sync. | # out of sync. | ||||
# | # | ||||
# IPDIVERT enables the divert IP sockets, used by ``ipfw divert''. It | # IPDIVERT enables the divert IP sockets, used by ``ipfw divert''. It | ||||
# depends on IPFIREWALL if compiled into the kernel. | # depends on IPFIREWALL if compiled into the kernel. | ||||
# | # | ||||
# IPFIREWALL_NAT adds support for in kernel nat in ipfw, and it requires | # IPFIREWALL_NAT adds support for in kernel nat in ipfw, and it requires | ||||
# LIBALIAS. | # LIBALIAS. | ||||
# | # | ||||
# IPFIREWALL_NPTV6 adds support for in kernel NPTv6 in ipfw. | |||||
# | |||||
# IPSTEALTH enables code to support stealth forwarding (i.e., forwarding | # IPSTEALTH enables code to support stealth forwarding (i.e., forwarding | ||||
# packets without touching the TTL). This can be useful to hide firewalls | # packets without touching the TTL). This can be useful to hide firewalls | ||||
# from traceroute and similar tools. | # from traceroute and similar tools. | ||||
# | # | ||||
# PF_DEFAULT_TO_DROP causes the default pf(4) rule to deny everything. | # PF_DEFAULT_TO_DROP causes the default pf(4) rule to deny everything. | ||||
# | # | ||||
# TCPDEBUG enables code which keeps traces of the TCP state machine | # TCPDEBUG enables code which keeps traces of the TCP state machine | ||||
# for sockets with the SO_DEBUG option set, which can then be examined | # for sockets with the SO_DEBUG option set, which can then be examined | ||||
# using the trpt(8) utility. | # using the trpt(8) utility. | ||||
# | # | ||||
# TCPPCAP enables code which keeps the last n packets sent and received | # TCPPCAP enables code which keeps the last n packets sent and received | ||||
# on a TCP socket. | # on a TCP socket. | ||||
# | # | ||||
# RADIX_MPATH provides support for equal-cost multi-path routing. | # RADIX_MPATH provides support for equal-cost multi-path routing. | ||||
# | # | ||||
options MROUTING # Multicast routing | options MROUTING # Multicast routing | ||||
options IPFIREWALL #firewall | options IPFIREWALL #firewall | ||||
options IPFIREWALL_VERBOSE #enable logging to syslogd(8) | options IPFIREWALL_VERBOSE #enable logging to syslogd(8) | ||||
options IPFIREWALL_VERBOSE_LIMIT=100 #limit verbosity | options IPFIREWALL_VERBOSE_LIMIT=100 #limit verbosity | ||||
options IPFIREWALL_DEFAULT_TO_ACCEPT #allow everything by default | options IPFIREWALL_DEFAULT_TO_ACCEPT #allow everything by default | ||||
options IPFIREWALL_NAT #ipfw kernel nat support | options IPFIREWALL_NAT #ipfw kernel nat support | ||||
options IPFIREWALL_NPTV6 #ipfw kernel IPv6 NPT support | |||||
options IPDIVERT #divert sockets | options IPDIVERT #divert sockets | ||||
options IPFILTER #ipfilter support | options IPFILTER #ipfilter support | ||||
options IPFILTER_LOG #ipfilter logging | options IPFILTER_LOG #ipfilter logging | ||||
options IPFILTER_LOOKUP #ipfilter pools | options IPFILTER_LOOKUP #ipfilter pools | ||||
options IPFILTER_DEFAULT_BLOCK #block all packets by default | options IPFILTER_DEFAULT_BLOCK #block all packets by default | ||||
options IPSTEALTH #support for stealth forwarding | options IPSTEALTH #support for stealth forwarding | ||||
options PF_DEFAULT_TO_DROP #drop everything by default | options PF_DEFAULT_TO_DROP #drop everything by default | ||||
options TCPDEBUG | options TCPDEBUG | ||||
▲ Show 20 Lines • Show All 2,059 Lines • ▼ Show 20 Lines | |||||
# Intel em(4) driver | # Intel em(4) driver | ||||
options EM_MULTIQUEUE # Activate multiqueue features/disable MSI-X | options EM_MULTIQUEUE # Activate multiqueue features/disable MSI-X | ||||
# zlib I/O stream support | # zlib I/O stream support | ||||
# This enables support for compressed core dumps. | # This enables support for compressed core dumps. | ||||
options GZIO | options GZIO | ||||
# BHND(4) drivers | # BHND(4) drivers | ||||
options BHND_LOGLEVEL # Logging threshold level | options BHND_LOGLEVEL # Logging threshold level | ||||
No newline at end of file |