Page MenuHomeFreeBSD
Feed Advanced Search

Feb 20 2024

zarychtam_plan-b.pwste.edu.pl added a comment to D41318: Add the "missing" WireGuard rc.d script.

That's the way how DragonFlyBSD devs solved the problem
https://gitweb.dragonflybsd.org/dragonfly.git/commitdiff/451640b7cf6bcf7826b901ac9a51647442adb96b

Feb 20 2024, 3:45 PM · manpages, rc, network

Feb 7 2024

crest_freebsd_rlwinm.de added inline comments to D41318: Add the "missing" WireGuard rc.d script.
Feb 7 2024, 4:06 PM · manpages, rc, network

Jan 16 2024

kevans resigned from D41318: Add the "missing" WireGuard rc.d script.

Resigning from this; I tried to provide feedback over IRC, but that was seemingly not well-received (and questions unanswered) and I'm not interested in reviewing this as-is. I'd much prefer splitting it into two scripts, one with, e.g., verbs, that manages wireguard interfaces and then the rc script that simply drives that in an obvious way. The last objection I heard was that there's too much state to pass around, but it's not at all clear why unless this is trying to mix way too much rc.conf configuration in with wg config.

Jan 16 2024, 4:15 PM · manpages, rc, network
rpokala added inline comments to D41318: Add the "missing" WireGuard rc.d script.
Jan 16 2024, 4:09 PM · manpages, rc, network

Jan 15 2024

crest_freebsd_rlwinm.de added inline comments to D41318: Add the "missing" WireGuard rc.d script.
Jan 15 2024, 12:48 PM · manpages, rc, network
crest_freebsd_rlwinm.de added inline comments to D41318: Add the "missing" WireGuard rc.d script.
Jan 15 2024, 12:41 PM · manpages, rc, network
crest_freebsd_rlwinm.de added inline comments to D41318: Add the "missing" WireGuard rc.d script.
Jan 15 2024, 12:20 PM · manpages, rc, network

Dec 29 2023

crest_freebsd_rlwinm.de added a comment to D41318: Add the "missing" WireGuard rc.d script.

No manual page to review, yet manpages is a group reviewer. Did a file get accidentally left out?

Dec 29 2023, 9:49 PM · manpages, rc, network

Dec 12 2023

pauamma_gundo.com added a comment to D41318: Add the "missing" WireGuard rc.d script.

No manual page to review, yet manpages is a group reviewer. Did a file get accidentally left out?

Dec 12 2023, 1:59 AM · manpages, rc, network

Oct 16 2023

michael_galassi.us added a comment to D41318: Add the "missing" WireGuard rc.d script.

This is my first review here, I hope to not be stepping on any toes. If I have, please correct me so I might do better next time. Overall your wireguard startup mechanism looks good and my suggestions are strictly cosmetic in nature. I would not be at all disappointed if this patch were committed unaltered.

Oct 16 2023, 1:00 AM · manpages, rc, network

Sep 13 2023

rcm added a member for network: rcm.
Sep 13 2023, 3:54 PM

Aug 23 2023

crest_freebsd_rlwinm.de added a comment to D41318: Add the "missing" WireGuard rc.d script.

The interface name restriction function is a judgment call restricting users from creating problematic (for shell scripts) interface names. Applying the same restrictions to existing services like netif and routing could break (partly) working configurations.

Aug 23 2023, 6:46 PM · manpages, rc, network

Aug 21 2023

pauamma_gundo.com accepted D25380: syslogd: allow network and local messages to use different formats.

Manual page English LGTM.

Aug 21 2023, 6:11 PM · network, manpages

Aug 18 2023

freebsd_igalic.co added a comment to D41318: Add the "missing" WireGuard rc.d script.

first pass…

Aug 18 2023, 2:59 PM · manpages, rc, network
crest_freebsd_rlwinm.de added a reviewer for D41318: Add the "missing" WireGuard rc.d script: manpages.
Aug 18 2023, 11:21 AM · manpages, rc, network

Aug 7 2023

wollman added a comment to D25380: syslogd: allow network and local messages to use different formats.

In our repo this is two separate commits, one for adding the enum and a second for the -r option. Anyone who wants to commit this, I'd be happy to provide git format-patch format.

Aug 7 2023, 10:51 PM · network, manpages
wollman updated the diff for D25380: syslogd: allow network and local messages to use different formats.

Restructured to use an enum for output formats rather than a bool, making it easier to change the defaults or add additional formats in the future. This was rebased onto 13.2 as a part of our migration; I haven't checked whether it still applies to 14-current.

Aug 7 2023, 10:45 PM · network, manpages
wollman added a comment to D25380: syslogd: allow network and local messages to use different formats.

I rewrote this to use an enum for the format type rather than a boolean, making it more flexible in the future. Will re-upload some day.

Aug 7 2023, 9:49 PM · network, manpages

Aug 4 2023

bapt added a reviewer for D41318: Add the "missing" WireGuard rc.d script: olivier.
Aug 4 2023, 11:35 AM · manpages, rc, network
bapt added reviewers for D41318: Add the "missing" WireGuard rc.d script: kevans, jhb, bapt.
Aug 4 2023, 11:30 AM · manpages, rc, network
crest_freebsd_rlwinm.de requested review of D41318: Add the "missing" WireGuard rc.d script.
Aug 4 2023, 10:44 AM · manpages, rc, network

May 4 2023

delphij added a watcher for network: delphij.
May 4 2023, 5:10 PM

Apr 25 2023

melifaro closed D39555: [fw]mark implementation for ipfw.
Apr 25 2023, 12:43 PM · network, manpages

Apr 19 2023

pauamma_gundo.com accepted D39555: [fw]mark implementation for ipfw.
Apr 19 2023, 8:06 PM · network, manpages
melifaro accepted D39555: [fw]mark implementation for ipfw.
Apr 19 2023, 12:29 PM · network, manpages
lytboris_gmail.com updated the diff for D39555: [fw]mark implementation for ipfw.
Apr 19 2023, 12:06 PM · network, manpages
lytboris_gmail.com updated the diff for D39555: [fw]mark implementation for ipfw.
Apr 19 2023, 7:37 AM · network, manpages
pauamma_gundo.com accepted D39555: [fw]mark implementation for ipfw.

Minor nits, fixable on commit if nothing else requires another round.

Apr 19 2023, 1:47 AM · network, manpages

Apr 18 2023

lytboris_gmail.com updated the diff for D39555: [fw]mark implementation for ipfw.
Apr 18 2023, 7:39 AM · network, manpages
lytboris_gmail.com updated the diff for D39555: [fw]mark implementation for ipfw.

Upated ipfw.8, fix some mandoc -T lint warnings.

Apr 18 2023, 7:37 AM · network, manpages
pauamma_gundo.com requested changes to D39555: [fw]mark implementation for ipfw.
Apr 18 2023, 3:32 AM · network, manpages

Apr 17 2023

lytboris_gmail.com updated the diff for D39555: [fw]mark implementation for ipfw.
Apr 17 2023, 3:16 PM · network, manpages
lytboris_gmail.com updated the diff for D39555: [fw]mark implementation for ipfw.
Apr 17 2023, 1:29 PM · network, manpages
lytboris_gmail.com added reviewers for D39555: [fw]mark implementation for ipfw: manpages, network.
Apr 17 2023, 12:20 PM · network, manpages
lytboris_gmail.com added a project to D39555: [fw]mark implementation for ipfw: network.
Apr 17 2023, 12:20 PM · network, manpages

Mar 26 2023

guest-patmaddox removed a watcher for network: guest-patmaddox.
Mar 26 2023, 6:50 PM
guest-patmaddox added a watcher for network: guest-patmaddox.
Mar 26 2023, 11:29 AM

Mar 15 2023

jlduran_gmail.com added a member for network: jlduran_gmail.com.
Mar 15 2023, 4:43 PM

Mar 14 2023

marcnarc_gmail.com removed a watcher for network: marcnarc_gmail.com.
Mar 14 2023, 1:55 PM

Mar 2 2023

enweiwu abandoned D36242: ifconfig: 80211, add assoc parameter.

This patch is no longer needed since I'm trying to use wpa_supplicant(8) on wtap(4). See D38508.

Mar 2 2023, 12:17 PM · network

Jan 16 2023

firk_cantconnect.ru added a comment to D34557: UNIX-socket bind(): distinguish between alive listening socket and random garbage.

@glebius ?

Jan 16 2023, 12:05 AM · network

Nov 30 2022

ghislain_smartix.llc added a watcher for network: ghislain_smartix.llc.
Nov 30 2022, 2:56 AM

Nov 25 2022

zlei added a comment to D36872: ifnet: Make if_inc_counter() a static inline function.

Ref the wiki of ifnet project: https://wiki.freebsd.org/projects/ifnet

Nov 25 2022, 12:54 AM · network

Nov 1 2022

zlei removed a watcher for network: zlei.
Nov 1 2022, 6:21 PM
zlei added a member for network: zlei.
Nov 1 2022, 6:20 PM

Oct 20 2022

enweiwu added a comment to D37070: ifconfig(8): scan list SSID UTF-32 support.
In D37070#841801, @bz wrote:
Oct 20 2022, 4:57 PM · network, wireless
bz added a comment to D37070: ifconfig(8): scan list SSID UTF-32 support.

See also https://reviews.freebsd.org/D32847

Oct 20 2022, 3:29 PM · network, wireless
enweiwu updated the test plan for D37070: ifconfig(8): scan list SSID UTF-32 support.
Oct 20 2022, 3:11 PM · network, wireless
enweiwu requested review of D37070: ifconfig(8): scan list SSID UTF-32 support.
Oct 20 2022, 3:10 PM · network, wireless

Oct 15 2022

kp closed D36691: if_me: Use dedicated network privilege.
Oct 15 2022, 3:23 PM · network

Oct 13 2022

zlei added a comment to D36691: if_me: Use dedicated network privilege.
In D36691#839695, @kp wrote:

What problem does this fix? In other words, what is the motivation for this change?

No known problems.
When I was trying to resolve https://bugs.freebsd.org/bugzilla/show_bug.cgi?id=266712, I dug into the privileges design. I checked multiple tunnel interface implementations and found that if_me shares network privilege with if_gre. Intuitively this would confuse consumer. Fortunately there is no other consumers in base system.

Is there a use case for separating the GRE and ME privs? It's conceptually cleaner, but it could (theoretically at least, I doubt anyone actually does this) break existing configurations that rely on granting PRIV_NET_GRE to administer me interfaces.

There is no other consumers (of PRIV_NET_GRE) in base system, except for if_gre and if_me. I have not checked ports yet but it should be easy to fix ( in ports ).

Oct 13 2022, 2:53 PM · network
kp added a comment to D36691: if_me: Use dedicated network privilege.

What problem does this fix? In other words, what is the motivation for this change?

Oct 13 2022, 8:36 AM · network

Oct 9 2022

zlei added inline comments to D36691: if_me: Use dedicated network privilege.
Oct 9 2022, 1:12 AM · network

Oct 7 2022

kp closed D36855: if_vxlan(4): Correct the statistic for output bytes.
Oct 7 2022, 11:46 AM · network

Oct 6 2022

zlei added inline comments to D36855: if_vxlan(4): Correct the statistic for output bytes.
Oct 6 2022, 4:39 PM · network
zlei added a reviewer for D36855: if_vxlan(4): Correct the statistic for output bytes: bryanv.
Oct 6 2022, 4:27 PM · network
zlei updated the diff for D36855: if_vxlan(4): Correct the statistic for output bytes.

The IPv4/IPv6 over IPv6 vxlan looks good after test.

  1. Rebase
  2. Update as @bryanv suggested.
Oct 6 2022, 4:25 PM · network
zlei added inline comments to D36855: if_vxlan(4): Correct the statistic for output bytes.
Oct 6 2022, 6:22 AM · network

Oct 5 2022

kp closed D36841: if_vxlan(4): Add missing statistic for input packets.
Oct 5 2022, 10:40 AM · network
bryanv added inline comments to D36855: if_vxlan(4): Correct the statistic for output bytes.
Oct 5 2022, 5:04 AM · network

Oct 4 2022

bryanv accepted D36841: if_vxlan(4): Add missing statistic for input packets.
Oct 4 2022, 7:44 PM · network
mjg added a comment to D36872: ifnet: Make if_inc_counter() a static inline function.

I would expect there are other avoidable slowdowns which prevent realizing the benefit.

Oct 4 2022, 7:17 AM · network
zlei added a comment to D36872: ifnet: Make if_inc_counter() a static inline function.

Is there any performance increase?

Oct 4 2022, 7:06 AM · network
glebius added a comment to D36872: ifnet: Make if_inc_counter() a static inline function.
In D36872#837077, @zlei.huang_gmail.com wrote:

For 12.x, i386 is Tier 1 supported platform. The counter_u64_add() still has runtime branches.

Oct 4 2022, 7:04 AM · network
glebius requested changes to D36872: ifnet: Make if_inc_counter() a static inline function.

There is a long trend in FreeBSD to make struct ifnet as less visible to drivers as possible. Ideally make it fully opaque. That will allow to change struct ifnet without breaking KBI of drivers. Some years ago I was really close, see https://svnweb.freebsd.org/base/projects/ifnet/. Actually today we have less drivers and this project is worth resurrecting, if I or somebody else have time for it.

Oct 4 2022, 7:02 AM · network
zlei added a comment to D36872: ifnet: Make if_inc_counter() a static inline function.

For 12.x, i386 is Tier 1 supported platform. The counter_u64_add() still has runtime branches.

Oct 4 2022, 7:01 AM · network
glebius added a comment to D36872: ifnet: Make if_inc_counter() a static inline function.

Is there any performance increase?

Oct 4 2022, 6:57 AM · network
zlei added a reviewer for D36872: ifnet: Make if_inc_counter() a static inline function: glebius.
Oct 4 2022, 6:56 AM · network
zlei requested review of D36872: ifnet: Make if_inc_counter() a static inline function.
Oct 4 2022, 6:53 AM · network

Oct 2 2022

zlei updated the test plan for D36855: if_vxlan(4): Correct the statistic for output bytes.
Oct 2 2022, 9:25 AM · network
zlei requested review of D36855: if_vxlan(4): Correct the statistic for output bytes.
Oct 2 2022, 9:24 AM · network

Sep 30 2022

zlei requested review of D36841: if_vxlan(4): Add missing statistic for input packets.
Sep 30 2022, 4:01 PM · network
kp closed D36794: if_vxlan(4): Check the size of data available in mbuf before using them.
Sep 30 2022, 11:59 AM · network
kp accepted D36794: if_vxlan(4): Check the size of data available in mbuf before using them.
Sep 30 2022, 9:54 AM · network
zlei added inline comments to D36794: if_vxlan(4): Check the size of data available in mbuf before using them.
Sep 30 2022, 9:20 AM · network
kp added a comment to D36794: if_vxlan(4): Check the size of data available in mbuf before using them.

This looks sane to me. We really do have to make sure there's enough contiguous data before we access it.

Sep 30 2022, 9:11 AM · network

Sep 29 2022

zlei added inline comments to D36794: if_vxlan(4): Check the size of data available in mbuf before using them.
Sep 29 2022, 2:12 PM · network
zlei requested review of D36794: if_vxlan(4): Check the size of data available in mbuf before using them.
Sep 29 2022, 2:08 PM · network

Sep 25 2022

zlei requested review of D36691: if_me: Use dedicated network privilege.
Sep 25 2022, 4:42 AM · network

Sep 21 2022

firk_cantconnect.ru updated the diff for D34557: UNIX-socket bind(): distinguish between alive listening socket and random garbage.

Document the change in man pages.

Sep 21 2022, 10:57 PM · network
firk_cantconnect.ru added a comment to D34579: Verify directory fds against chroot when receiving them through SCM_RIGHTS.

I can't see how this can be used maliciously, e.g. forcing some application outside of jail to send its SCM_RIGHTS to a jail.

Sep 21 2022, 9:33 PM · network, Jails, security

Sep 19 2022

zlei added a comment to D32820: vxlan: Add support for socket ioctls SIOC[SG]TUNFIB.
In D32820#824395, @zlei.huang_gmail.com wrote:

Hi @melifaro ,
Any chance will this be MFCed into stable/13 ?

Sep 19 2022, 1:17 AM · network

Sep 8 2022

glebius added a comment to D34579: Verify directory fds against chroot when receiving them through SCM_RIGHTS.

I can't see how this can be used maliciously, e.g. forcing some application outside of jail to send its SCM_RIGHTS to a jail. Even if such case exists for a certain application, that would be bug in that application, IMHO. The initial idea of SCM_RIGHTS was actually to grant rights intentionally, so there can be a valid case for a certain application that wants to grant rights to its peer in a jail.

Sep 8 2022, 4:32 AM · network, Jails, security
glebius added a reviewer for D34557: UNIX-socket bind(): distinguish between alive listening socket and random garbage: glebius.
Sep 8 2022, 4:28 AM · network

Aug 29 2022

woodsb02 closed D36196: Create branch vendor/dhcpcd and import dhcpcd release 9.4.1.

Committed.
https://cgit.freebsd.org/src/commit/?h=vendor/dhcpcd&id=96dba636abec6d5451820add99300bda2ca6d86a

Aug 29 2022, 7:32 AM · network
philip accepted D36196: Create branch vendor/dhcpcd and import dhcpcd release 9.4.1.

This looks good.

Aug 29 2022, 2:12 AM · network

Aug 24 2022

woodsb02 added a reviewer for D36196: Create branch vendor/dhcpcd and import dhcpcd release 9.4.1: philip.
Aug 24 2022, 8:09 PM · network

Aug 23 2022

zlei added a comment to D32820: vxlan: Add support for socket ioctls SIOC[SG]TUNFIB.

Hi @melifaro ,
Any chance will this be MFCed into stable/13 ?

Aug 23 2022, 4:04 AM · network

Aug 20 2022

enweiwu added a comment to D36242: ifconfig: 80211, add assoc parameter.
In D36242#823477, @cy wrote:

Will there be a man page update for this at some point?

Aug 20 2022, 1:09 PM · network

Aug 19 2022

cy added a comment to D36242: ifconfig: 80211, add assoc parameter.

Will there be a man page update for this at some point?

Aug 19 2022, 8:43 PM · network

Aug 18 2022

lwhsu added inline comments to D36242: ifconfig: 80211, add assoc parameter.
Aug 18 2022, 1:57 AM · network

Aug 17 2022

lwhsu added a reviewer for D36242: ifconfig: 80211, add assoc parameter: wireless.
Aug 17 2022, 3:54 PM · network
enweiwu requested review of D36242: ifconfig: 80211, add assoc parameter.
Aug 17 2022, 2:23 PM · network

Aug 14 2022

woodsb02 updated the test plan for D36196: Create branch vendor/dhcpcd and import dhcpcd release 9.4.1.
Aug 14 2022, 6:23 AM · network
woodsb02 updated the test plan for D36196: Create branch vendor/dhcpcd and import dhcpcd release 9.4.1.
Aug 14 2022, 6:22 AM · network
woodsb02 requested review of D36196: Create branch vendor/dhcpcd and import dhcpcd release 9.4.1.
Aug 14 2022, 6:08 AM · network

Aug 4 2022

konrad.kreciwilk_korbank.pl added a watcher for network: konrad.kreciwilk_korbank.pl.
Aug 4 2022, 11:07 AM

Jul 29 2022

kp closed D35968: Introduce and use the NET_EPOCH_DRAIN_CALLBACKS() macro.
Jul 29 2022, 7:22 PM · network
kp accepted D35968: Introduce and use the NET_EPOCH_DRAIN_CALLBACKS() macro.

I like this (and will commit it soon), but there's two epoch_drain_callbacks() in sys/net/if.c that should also be changed. I'll do that as part of the commit.

Jul 29 2022, 4:18 PM · network

Jul 28 2022

melifaro accepted D35968: Introduce and use the NET_EPOCH_DRAIN_CALLBACKS() macro.
Jul 28 2022, 12:29 PM · network