Re: Assigning source addresses with IPV6_PKTINFO

2011-08-04 Thread Claudio Jeker
On Thu, Aug 04, 2011 at 11:23:44PM +0200, Alexander Bluhm wrote: > On Thu, Aug 04, 2011 at 05:06:24PM +0200, Mike Belopuhov wrote: > > I'm not sure it's a desired behavior and afaik it's not possible > > to achieve this with IPv4 sockets without the need to be a root. > > Do we want to change that?

[patch] fix bootstrapping lex

2011-08-04 Thread Daniel Dickman
The lex Makefile says: "To bootstrap lex, cp initscan.c to scan.c and run make." On amd64-current this doesn't seem to build: [/usr/src/usr.bin/lex] cp initscan.c scan.c [/usr/src/usr.bin/lex] make yacc -d parse.y mv y.tab.c parse.c mv y.tab.h parse.h cc -O2 -pi

Re: Assigning source addresses with IPV6_PKTINFO

2011-08-04 Thread Mike Belopuhov
On Thu, Aug 4, 2011 at 11:23 PM, Alexander Bluhm wrote: > On Thu, Aug 04, 2011 at 05:06:24PM +0200, Mike Belopuhov wrote: >> I'm not sure it's a desired behavior and afaik it's not possible >> to achieve this with IPv4 sockets without the need to be a root. >> Do we want to change that? > > Yes.

Re: Assigning source addresses with IPV6_PKTINFO

2011-08-04 Thread Mike Belopuhov
i saw what kame did. be my guest and try to port that. On Thu, Aug 4, 2011 at 11:23 PM, Alexander Bluhm wrote: > On Thu, Aug 04, 2011 at 05:06:24PM +0200, Mike Belopuhov wrote: >> I'm not sure it's a desired behavior and afaik it's not possible >> to achieve this with IPv4 sockets without the ne

Re: Assigning source addresses with IPV6_PKTINFO

2011-08-04 Thread Alexander Bluhm
On Thu, Aug 04, 2011 at 05:06:24PM +0200, Mike Belopuhov wrote: > I'm not sure it's a desired behavior and afaik it's not possible > to achieve this with IPv4 sockets without the need to be a root. > Do we want to change that? Yes. KAME fixed that, too. > The following change restricts it to the

Re: Assigning source addresses with IPV6_PKTINFO

2011-08-04 Thread Mike Belopuhov
On Thu, Aug 04, 2011 at 17:06 +0200, Mike Belopuhov wrote: > Hi, > > Currently it's possible to assign *any* IPv6 source address to > the datagram sent out by the unprivileged process by supplying > a IPV6_PKTINFO control message to the sendmsg(2). > > I'm not sure it's a desired behavior and afa

Re: isakmpd NAT-T interoperability

2011-08-04 Thread Stuart Henderson
Mitja requested a tcpdump diff to go with this. Index: print-ike.c === RCS file: /cvs/src/usr.sbin/tcpdump/print-ike.c,v retrieving revision 1.35 diff -u -p -r1.35 print-ike.c --- print-ike.c 7 Jun 2010 16:20:58 - 1.35 +++ p

Assigning source addresses with IPV6_PKTINFO

2011-08-04 Thread Mike Belopuhov
Hi, Currently it's possible to assign *any* IPv6 source address to the datagram sent out by the unprivileged process by supplying a IPV6_PKTINFO control message to the sendmsg(2). I'm not sure it's a desired behavior and afaik it's not possible to achieve this with IPv4 sockets without the need t

GelinDamatF�rsati.com da yeni ve keyifli f�rsatlar sunuluyor.

2011-08-04 Thread GelinDamatFirsati.com
[IMAGE] Merhaba, GelinDamatF}rsat}.com da yeni ve keyifli f}rsatlar olu~turarak geni~ bir m|~teri kitlesine ula~abilirsiniz. "Keyif F}rsatlar}" ad}yla iki ki~ilik, tan}~ma, vzel g|n, evlilipe haz}rl}k, kutlamalara igin en uygun f}rsatlar} birlikte sunabiliriz. T|m f}rsatlar}m}z s|rekli en az iki

isakmpd NAT-T interoperability

2011-08-04 Thread Stuart Henderson
This diff from hshoexer@ some time ago fixes the encapsulation mode used in NAT-T negotiations. Mitja has been running this for ages, I need it too, and it makes sense to have it seen by more people and in the list archives for people who need it until it can be fixed in tree. Currently we always