PSARC/2006/190 Large Send Offload (LSO)6390838 XGE need to support adaptive TX by switching COPY/DMA according to MBLKL(mp)6394197 Solaris need to support LSO (Large Send Offload)6466394 Minor log
PSARC/2006/190 Large Send Offload (LSO)6390838 XGE need to support adaptive TX by switching COPY/DMA according to MBLKL(mp)6394197 Solaris need to support LSO (Large Send Offload)6466394 Minor logic error in tcp_send_data()6467558 Need to integrate HAL 2.0.6765 to improve rx performance
show more ...
6265494 assertion failed: sqp != NULL, file: ../../common/inet/squeue.c, line: 7156266870 assertion failed: cr != NULL, file: ../../common/os/strsubr.c, line: 84376266950 tcp_closemp reuse causes a
6265494 assertion failed: sqp != NULL, file: ../../common/inet/squeue.c, line: 7156266870 assertion failed: cr != NULL, file: ../../common/os/strsubr.c, line: 84376266950 tcp_closemp reuse causes assertion failure in squeue code6379249 SDT probes in CONN_INC_REF and CONN_DEC_REF should be where conn_lock is held6402737 IP spends too much time identifying bad remote host when under SYN attack6404207 tcp_clean_death() gets called twice for an eager6408242 access to freed tcp_t in tcp_close()6412077 missing CONN_DEC_REF in tcp_conn_request()6415132 conn_recv should be set before insering a conn_t in a hash table6448747 A tcp connection can be queued again for tcp TIMEWAIT processing
PSARC 2005/516 IPsec Tunnel Reform4882852 tunnels vs. inverse acquire.4970365 Support of ESP tunnel mode within Solaris5027528 in.iked should be more intelligent about tunnel addresses6180161 nee
PSARC 2005/516 IPsec Tunnel Reform4882852 tunnels vs. inverse acquire.4970365 Support of ESP tunnel mode within Solaris5027528 in.iked should be more intelligent about tunnel addresses6180161 need to support multiple tunnels to a single nat6208976 ipsecconf error messages make me think there are monsters under the bed6313012 Clean up from removal of ipsec_inbound_debug_tag()6351840 assertion failed: (ipha->ipha_protocol != 6) && (ipha->ipha_protocol != 17), ip.c, line: 153516359831 multicast tunnels don't get their IPsec policy checked.6369094 ipseckey shouldn't accept/save-out encryption algorithm even it's none/any6374560 ipseckey debug functions should be moved to libipsecutil6374596 dump utilities need to be able to understand inner tunnel addresses and netmasks6402781 Five dead declarations in IPsec code6405338 spdsock leaks policy head references6437366 NAT-OA payloads not processed early enough.6465594 ipsec_policy_delete() uses wrong ipsec_selkey_t structure.6467596 spdsock_ext_to_actvec() needs to reset "act" upon every SPD_ATTR_NEXT.6470725 PF_POLICY shouldn't accept '0' for an algorithm value.6475903 Outbound DROP rules are not enforced6480815 INVERSE_ACQUIRE failures leak in in.iked6482403 Race in in.iked, early door call vs. rest of initialization code6482653 Don't accept UDP-encapsulated ESP on non-NAT SAs.6487857 Post-ACQUIRE, AH+ESP packets misinitalized ipha/ip6
6343157 svcadm disable ipfilter does not flush the rules6484763 PFHOOKS breaks post-ACQUIRE ESP processing6485599 msgpullup/pullupmsg now implies either M_DATA or M_MULTIDATA6485731 panic in fil.c
6343157 svcadm disable ipfilter does not flush the rules6484763 PFHOOKS breaks post-ACQUIRE ESP processing6485599 msgpullup/pullupmsg now implies either M_DATA or M_MULTIDATA6485731 panic in fil.c trying to release ipf_mutex while not held6485761 ipfilter kernel module always enables itself on load6485781 mutex_enter: bad mutex in ipflog_read6485943 MSG_FWCOOKED_* survived attempted genocide6486513 too much of a good thing can be bad6486575 use ipf -D twice will panic the system6487360 physical_in hook inserted twice into ip_input() for onnv putback
PSARC/2005/334 Packet Filtering HooksPSARC/2006/321 ARP packet filtering Hooks6401219 use of pullupmsg() considered destructive - clears h/w checksum flags6418698 PSARC/2005/334 - Packet Filtering
PSARC/2005/334 Packet Filtering HooksPSARC/2006/321 ARP packet filtering Hooks6401219 use of pullupmsg() considered destructive - clears h/w checksum flags6418698 PSARC/2005/334 - Packet Filtering Hooks API6449290 package prototype files in usr/src/pkgdefs/SUNWipfr missing CDDL6449292 package prototype files in usr/src/pkgdefs/SUNWipfu missing CDDL6449296 Makefiles for ipf kernel module building missing CDDL6473996 "fastroute" + "nat" packets cause memory leaks in ipfilter--HG--rename : usr/src/cmd/ipf/etc/pfil.ap.sh => deleted_files/usr/src/cmd/ipf/etc/pfil.ap.shrename : usr/src/cmd/ipf/pfild/Makefile => deleted_files/usr/src/cmd/ipf/pfild/Makefilerename : usr/src/cmd/ipf/pfild/pfild.c => deleted_files/usr/src/cmd/ipf/pfild/pfild.crename : usr/src/cmd/ipf/pfild/vas.c => deleted_files/usr/src/cmd/ipf/pfild/vas.crename : usr/src/cmd/ipf/svc/pfil => deleted_files/usr/src/cmd/ipf/svc/pfilrename : usr/src/cmd/ipf/svc/pfil.xml => deleted_files/usr/src/cmd/ipf/svc/pfil.xmlrename : usr/src/uts/common/inet/pfil/compat.h => deleted_files/usr/src/uts/common/inet/pfil/compat.hrename : usr/src/uts/common/inet/pfil/ndd.c => deleted_files/usr/src/uts/common/inet/pfil/ndd.crename : usr/src/uts/common/inet/pfil/os.h => deleted_files/usr/src/uts/common/inet/pfil/os.hrename : usr/src/uts/common/inet/pfil/pfil.c => deleted_files/usr/src/uts/common/inet/pfil/pfil.crename : usr/src/uts/common/inet/pfil/pfil.conf => deleted_files/usr/src/uts/common/inet/pfil/pfil.confrename : usr/src/uts/common/inet/pfil/pfil.h => deleted_files/usr/src/uts/common/inet/pfil/pfil.hrename : usr/src/uts/common/inet/pfil/pfild.h => deleted_files/usr/src/uts/common/inet/pfil/pfild.hrename : usr/src/uts/common/inet/pfil/pfildrv.c => deleted_files/usr/src/uts/common/inet/pfil/pfildrv.crename : usr/src/uts/common/inet/pfil/pfilstream.c => deleted_files/usr/src/uts/common/inet/pfil/pfilstream.crename : usr/src/uts/common/inet/pfil/pkt.c => deleted_files/usr/src/uts/common/inet/pfil/pkt.crename : usr/src/uts/common/inet/pfil/qif.c => deleted_files/usr/src/uts/common/inet/pfil/qif.crename : usr/src/uts/common/inet/pfil/qif.h => deleted_files/usr/src/uts/common/inet/pfil/qif.hrename : usr/src/uts/intel/pfil/Makefile => deleted_files/usr/src/uts/intel/pfil/Makefilerename : usr/src/uts/sparc/pfil/Makefile => deleted_files/usr/src/uts/sparc/pfil/Makefilerename : usr/src/uts/common/inet/pfil/misc.c => usr/src/uts/common/inet/ipf/misc.c
6240605 TCP connection in lingering state can't be killed.
6446620 SO_ALLZONES doesn't seem to work for IPv66461365 SO_ALLZONES doesn't get along with SO_DONTROUTE and IP_NEXTHOP
4963362 routing socket is not zone-aware6391685 Source interface selection is flawed when sending via default route within a zone.6423486 Solaris should include an option to disable loopback traffi
4963362 routing socket is not zone-aware6391685 Source interface selection is flawed when sending via default route within a zone.6423486 Solaris should include an option to disable loopback traffic routing between non-global zones.6426172 ICMP Destination unreachable from global zone instead non-global6453678 TCP RST are routed as if they were sent by the global zone6453732 zones routing check for "next hop reachable from zone" for default routes is flawed
6466329 tcp_fuse_rrw() leaves tcp_fuse_lock held if the stream is plugged
6440123 TCP Fusion loopback connections may hang due to flow control logic error6458410 read() may spuriously return EAGAIN while unfusing a TCP connection
PSARC 2005/707 Surya: Forwarding Performance Enhancement6385609 Solaris has poor V4 forwarding throughput--HG--rename : usr/src/uts/common/inet/ipf/radix.c => usr/src/common/net/patricia/radix.c
PSARC 2005/707 Surya: Forwarding Performance Enhancement6385609 Solaris has poor V4 forwarding throughput--HG--rename : usr/src/uts/common/inet/ipf/radix.c => usr/src/common/net/patricia/radix.crename : deleted_files/usr/src/uts/common/inet/ipf/radix.h => usr/src/uts/common/net/radix.h
6389163 race in TCP Fusion TLI accept logic induces spinning in RPC
PSARC 2006/407 SO_EXCLBIND, socket exclusive binding6410719 ASSERT() panic in ipsec_in_is_secure()6442609 TCP_EXCLBIND handling has problem with server restarting6445396 Add SO_EXCLBIND socket opt
PSARC 2006/407 SO_EXCLBIND, socket exclusive binding6410719 ASSERT() panic in ipsec_in_is_secure()6442609 TCP_EXCLBIND handling has problem with server restarting6445396 Add SO_EXCLBIND socket option
6348581 BAD TRAP in "ip" due to NULL pointer dereference (tcp_fuse_rcv_drain)
PSARC 2006/073 PF_ROUTE: Include interface name with RTM_NEWADDR/RTM_DELADDRPSARC 2006/084 SO_ALLZONES4963315 Should make IKE work for non-global zones4984263 in.iked removes server entities when
PSARC 2006/073 PF_ROUTE: Include interface name with RTM_NEWADDR/RTM_DELADDRPSARC 2006/084 SO_ALLZONES4963315 Should make IKE work for non-global zones4984263 in.iked removes server entities when unnumbered interfaces go away5024997 system daemons need a way to receive packets from all zones6218993 PF_ROUTE: RTM_NEWADDR/RTM_DELADDR should include interface name via RTA_IFP6422023 sctp doesn't need shadow copies of conn_t socket option bits6426542 Comment about ipp_use_min_mtu got lost and wandered into conn_t6430869 in.iked should ignore loopback addresses, not loopback interfaces6438186 SCTP handling of getsockopt( .. SO_MAC_EXEMPT) is oddly inconsistent with TCP, UDP
6407401 specweb is haning on Nevada when compiled with SunStudio 11
6416743 kernel SSL does not work when SSL client is on the same machine as server
6404563 Trusted integration breaks part of ucred propagation
6332821 TCP fails to deliver data following URGENT data until next packet arrives.
PSARC/2002/762 Layered Trusted SolarisPSARC/2005/060 TSNET: Trusted Networking with Security LabelsPSARC/2005/259 Layered Trusted Solaris Label InterfacesPSARC/2005/573 Solaris Trusted Extensions
PSARC/2002/762 Layered Trusted SolarisPSARC/2005/060 TSNET: Trusted Networking with Security LabelsPSARC/2005/259 Layered Trusted Solaris Label InterfacesPSARC/2005/573 Solaris Trusted Extensions for PrintingPSARC/2005/691 Trusted Extensions for Device AllocationPSARC/2005/723 Solaris Trusted Extensions Filesystem LabelingPSARC/2006/009 Labeled AuditingPSARC/2006/155 Trusted Extensions RBAC ChangesPSARC/2006/191 is_system_labeled6293271 Zone processes should use zone_kcred instead of kcred6394554 integrate Solaris Trusted Extensions--HG--rename : usr/src/cmd/dminfo/Makefile => deleted_files/usr/src/cmd/dminfo/Makefilerename : usr/src/cmd/dminfo/dminfo.c => usr/src/cmd/allocate/dminfo.c
6340735 write() may hang on loopback tcp connections6366442 udp_open() can race with udp_wput(); panic ensues6368593 <inet/ipclassifier.h> depends on unshipped <inet/udp_impl.h>
6367677 TCP needs to inherit the tcp_init_cwnd from listener
PSARC 2005/654 Nemo soft rings6306717 For Nemo based drivers, IP can ask dls to do the fanout
PSARC 2005/603 IP_NEXTHOP socket option6264845 Need Policy Based Routing support in Solaris
6359389 ICMP_MIN_TCP_HDR should be 12
12345678910