In D9920#205191, @lifanov wrote:I would be for reassembling all ip4 packets approach. Is there a downside to this?
- Queries
- All Stories
- Search
- Advanced Search
- Transactions
- Transaction Logs
Feed Advanced Search
Advanced Search
Advanced Search
Mar 8 2017
Mar 8 2017
Thank you for taking the time to test!
Mar 7 2017
Mar 7 2017
They're claiming some DNSSEC queries are returning fragmented as UDP and the workstation profile is dropping them. I'd like to see some packet dumps to prove it, but it feels straightforward.
The discussion is here: https://forums.freebsd.org/threads/48760/
feld retitled D9920: Fix rc.firewall workstation profile for fragmented packets from to Fix rc.firewall workstation profile to work with DNSSEC.
Mar 2 2017
Mar 2 2017
multimedia/plexmediaserver{-plexpass}: Update to 1.4.3
Mar 1 2017
Mar 1 2017
net-p2p/sonarr: Update to 2.0.0.4613
Feb 28 2017
Feb 28 2017
multimedia/plexmediaserver{-plexpass}: Add option for Plex Relay
Feb 25 2017
Feb 25 2017
sysutils/zfstools: Add SHEBANGFIX
feld closed D9473: sysutils/zfstools: Use SHEBANGFIX by committing rP434837: sysutils/zfstools: Add SHEBANGFIX.
Feb 22 2017
Feb 22 2017
news/nzbget: rc script improvement
net-p2p/radarr: Update to 0.2.0.375
lang/mono: Fix minor spelling issue in pkg-message
Add Radarr to the ports tree
Feb 21 2017
Feb 21 2017
feld committed rP434554: devel/lua51-libevent: Fix RUN_DEPENDS to guarantee we get the luasocket for lua….
devel/lua51-libevent: Fix RUN_DEPENDS to guarantee we get the luasocket for lua…
This is a binding of libevent to Lua. It will serve as a drop-in
net/py-matrix-synapse: Update to 0.19.2
multimedia/plexmediaserver-plexpass: Update to 1.4.2
Feb 14 2017
Feb 14 2017
multimedia/plexmediaserver-plexpass: Update to 1.4.1
net-mgmt/xymon-{client,server}: Update to 4.3.28
Feb 12 2017
Feb 12 2017
net/py-matrix-synapse: Update to 0.19.1
Feb 10 2017
Feb 10 2017
games/xtux: It has been brought to my attention that UTF-8 is acceptable,
Feb 9 2017
Feb 9 2017
games/xtux: Fix Makefile encoding to be ASCII
Feb 8 2017
Feb 8 2017
net-mgmt/unifi5: Clean up child processes
Feb 7 2017
Feb 7 2017
please commit separately though, xxhash first then py-xxhash
Revert removal of old unifi entries from MOVED
Remove old net-mgmt/unifi entries as the ports have expired
net-mgmt/unifi5: Update to 5.4.11
Feb 6 2017
Feb 6 2017
audio/murmur: Update to 1.2.19
net/py-matrix-synapse: Update to 0.19.0
Feb 5 2017
Feb 5 2017
net/py-pyshark: Update to 0.3.6.2
Feb 4 2017
Feb 4 2017
Document mantis vulnerability
Document vulnerabilities in guile2
Document vulnerabilities in chicken
Document libebml vulnerabilities
Document freeimage vulnerability
Feb 2 2017
Feb 2 2017
Add new UPDATING entry with details on newest changes to uwsgi
www/uwsgi: Further rc script security improvements
multimedia/plexmediaserver{-plexpass}: Update to 1.3.4
Jan 31 2017
Jan 31 2017
adding demon, as this is his port
feld retitled D9398: Further improve www/uwsgi daemon/socket security from to Further improve www/uwsgi daemon/socket security.
Jan 30 2017
Jan 30 2017
net-mgmt/nfsen: Fix syntax error in patch preventing nfsen from running
Jan 29 2017
Jan 29 2017
lang/phantomjs: Update to 2.1.1
Jan 27 2017
Jan 27 2017
Add UPDATING entry to notify about uwsgi default socket mode change
I forgot to add this to the commit log, so I'm abandoning to close it.
www/uwsgi: Change default socket mode to 600 for security
Syntax was wrong. You need -C=value or --chmod-socket=value.
net-mgmt/nfsen: Update to 1.3.7
Document vulnerability in net-mgmt/nfsen
Jan 26 2017
Jan 26 2017
feld retitled D9355: devel/storm: Update to 1.0.2, many improvements from to devel/storm: Update to 1.0.2, many improvements.
Jan 20 2017
Jan 20 2017
amend 20170120 UPDATING entry regarding mysql56-server
databases/mysql56-server: Do not install my.cnf sample
Add UPDATING entry about recent mysql56-server issue
actually this is wrong as well. We've determined the issue is that a lot of people are running MySQL databases without any my.cnf at all, which sets certain InnoDB settings. If you try to use any my.cnf without those same settings MySQL will fail to start.
databases/mysql56-server: Rollback rc script changes
feld retitled D9257: Fix ${mysql_optfile} in mysql56-server from to Fix ${mysql_optfile} in mysql56-server.
Jan 19 2017
Jan 19 2017
ISA-L is a collection of optimized low-level functions targeting storage
databases/mysql56: Update to 5.6.35
net/py-matrix-synapse: Add additional missing run dependencies
Jan 18 2017
Jan 18 2017
net/py-matrix-synapse: Update to 0.18.7
feld closed D9228: Update py-matrix-synapse by committing rP431780: net/py-matrix-synapse: Update to 0.18.7.
devel/py-unpaddedbase64: Update to 1.1.0
rc script improvements
Jan 17 2017
Jan 17 2017
net-mgmt/unifi5: Update to 5.4.9
net-mgmt/smokeping: Allow slaves to contact master over HTTPS
Jan 13 2017
Jan 13 2017
net-mgmt/rancid3: Fix path to perl in sample config file
Consolidate duplicate openssh vuxml entries
Jan 11 2017
Jan 11 2017
feld retitled D9142: net-mgmt/smokeping: Add support for https master URLs from to net-mgmt/smokeping: Add support for https master URLs.
Document FreeBSD-SA-17:01.openssh
I have *not* built and tested this. It should be validated that it is working correctly normally and with a profile.
feld retitled D9135: www/uwsgi: Fix insecure default socket mode from to www/uwsgi: Fix insecure default socket mode.
MFH: r430723 r430728 r431184
net-mgmt/rancid3: Update to 3.6.2
Jan 10 2017
Jan 10 2017
feld committed rP431145: databases/percona57-server: Update pkg-message to note new root password routine.
databases/percona57-server: Update pkg-message to note new root password routine
databases/percona57-server: port improvements
databases/percona57: Add PORTREVISION to slave ports
feld retitled D9122: Fix Percona ports to actually link with OpenSSL from to Fix Percona ports to actually link with OpenSSL.
Welcome Percona 5.7 ports to the tree
feld closed D8785: Create Percona 5.7 Ports by committing rP431126: Welcome Percona 5.7 ports to the tree.
fix build/install of percona-pam-for-mysql plugin
Slave ports should not get the OPTIONS
mail/archiveopteryx{-devel}: Fix build on HEAD