4409 INET_ADDRSTRLEN, INET6_ADDRSTRLEN, in6addr_any not visible with -std=c99 -D_XOPEN_SOURCE=600Reviewed by: Robert Mustacchi <rm@joyent.com>Approved by: Dan McDonald <danmcd@kebe.com>
877 share_nfs cannot share to IPv6 subnets1554 SMB has no concept of IPv6 host access lists1592 NFS access checks shouldn't fail if client address can't be resolvedReviewed by: Gordon Ross <gordon
877 share_nfs cannot share to IPv6 subnets1554 SMB has no concept of IPv6 host access lists1592 NFS access checks shouldn't fail if client address can't be resolvedReviewed by: Gordon Ross <gordon.w.ross@gmail.com>Reviewed by: Dan McDonald <danmcd@nexenta.com>Approved by: Richard Lowe <richlowe@richlowe.net>
show more ...
1361 Add support for socket options TCP_KEEPCNT, TCP_KEEPIDLE, TCP_KEEPINTVLReviewed by: Pavan <pavan.tc@gmail.com>Reviewed by: Dan McDonald <danmcd at nexenta.com>Reviewed by: Garrett D'Amore <ga
1361 Add support for socket options TCP_KEEPCNT, TCP_KEEPIDLE, TCP_KEEPINTVLReviewed by: Pavan <pavan.tc@gmail.com>Reviewed by: Dan McDonald <danmcd at nexenta.com>Reviewed by: Garrett D'Amore <garrett@damore.org>Approved by: Garrett D'Amore <garrett@damore.org>
PSARC 2010/151 new socket options for TCP timers6955557 Various new TCP socket options
6524578 <netinet/arp.h> and <net/if_arp.h> are too much of a good thing6931308 Documented method for setting HOST route for IPMP target selection does not work6937848 ipv6addrsel fails because the
6524578 <netinet/arp.h> and <net/if_arp.h> are too much of a good thing6931308 Documented method for setting HOST route for IPMP target selection does not work6937848 ipv6addrsel fails because the statically added NCE can get deleted.6937898 ARP/ND need to filter out Martian addresses correctly.
6874309 Remove NIS+ from Solaris
PSARC/2009/331 IP Datapath RefactoringPSARC/2008/522 EOF of 2001/070 IPsec HW Acceleration supportPSARC/2009/495 netstat -r flags for blackhole and reject routesPSARC 2009/496 EOF of XRESOLVPSARC
PSARC/2009/331 IP Datapath RefactoringPSARC/2008/522 EOF of 2001/070 IPsec HW Acceleration supportPSARC/2009/495 netstat -r flags for blackhole and reject routesPSARC 2009/496 EOF of XRESOLVPSARC/2009/494 IP_DONTFRAG socket optionPSARC/2009/515 fragmentation controls for ping and traceroute6798716 ip_newroute delenda est6798739 ARP and IP are too separate6807265 IPv4 ip2mac() support6756382 Please remove Venus IPsec HWACCEL code6880632 sendto/sendmsg never returns EHOSTUNREACH in Solaris6748582 sendmsg() return OK, but doesn't send message using IPv4-mapped x IPv6 addr1119790 TCP and path mtu discovery4637227 should support equal-cost multi-path (ECMP)5078568 getsockopt() for IPV6_PATHMTU on a non-connected socket should not succeed6419648 "AR* contract private note" should be removed as part of ATM SW EOL6274715 Arp could keep the old entry in the cache while it waits for an arp response6605615 Remove duplicated TCP/IP opt_set/opt_get code; use conn_t6874677 IP_TTL can be used to send with ttl zero4034090 arp should not let you delete your own entry6882140 Implement IP_DONTFRAG socket option6883858 Implement ping -D option; traceroute -F should work for IPv6 and shared-IP zones1119792 TCP/IP black hole detection is broken on receiver4078796 Directed broadcast forwarding code has problems4104337 restrict the IPPROTO_IP and IPPROTO_IPV6 options based on the socket family4203747 Source address selection for source routed packets4230259 pmtu is increased every ip_ire_pathmtu_interval timer value.4300533 When sticky option ipv6_pktinfo set to bogus address subsequent connect time out4471035 ire_delete_cache_gw is called through ire_walk unnecessarily4514572 SO_DONTROUTE socket option doesn't work with IPv64524980 tcp_lookup_ipv4() should compare the ifindex against tcpb->tcpb_bound_if4532714 machine fails to switch quickly among failed default routes4634219 IPv6 path mtu discovery is broken when using routing header4691581 udp broadcast handling causes too many replicas4708405 mcast is broken on machines when all interfaces are IFF_POINTOPOINT4770457 netstat/route: source address of interface routes pretends to be gateway address4786974 use routing table to determine routes/interface for multicast4792619 An ip_fanout_udp_ipc_v6() routine might lead to some simpler code4816115 Nuke ipsec_out_use_global_policy4862844 ipsec offload corner case4867533 tcp_rq and tcp_wq are redundant4868589 NCEs should be shared across an IPMP group4872093 unplumbing an improper virtual interface panics in ip_newroute_get_dst_ill()4901671 FireEngine needs some cleanup4907617 IPsec identity latching should be done before sending SYN-ACK4941461 scopeid and IPV6_PKTINFO with UDP/ICMP connect() does not work properly4944981 ip does nothing with IP6I_NEXTHOP4963353 IPv4 and IPv6 proto fanout codes could be brought closer4963360 consider passing zoneid using ip6i_t instead of ipsec_out_t in NDP4963734 new ip6_asp locking is used incorrectly in ip_newroute_v6()5008315 IPv6 code passes ip6i_t to IPsec code instead of ip6_t5009636 memory leak in ip_fanout_proto_v6()5092337 tcp/udp option handling can use some cleanup5035841 Solaris can fail to create a valid broadcast ire5043747 ar_query_xmit: Could not find the ace5051574 tcp_check_policy is missing some checks6305037 full hardware checksum is discarded when there're more than 2 mblks in the chain6311149 ip.c needs to be put through a woodchipper4708860 Unable to reassemble CGTP fragmented multicast packets6224628 Large IPv6 packets with IPsec protection sometimes have length mismatch.6213243 Solaris does not currently support Dead Gateway Detection5029091 duplicate code in IP's input path for TCP/UDP/SCTP4674643 through IPv6 CGTP routes, the very first packet is sent only after a while6207318 Multiple default routes do not round robin connections to routers.4823410 IP has an inconsistent view of link mtu5105520 adding interface route to down interface causes ifconfig hang5105707 advanced sockets API introduced some dead code6318399 IP option handling for icmp and udp is too complicated6321434 Every dropped packet in IP should use ip_drop_packet()6341693 ifconfig mtu should operate on the physical interface, not individual ipif's6352430 The credentials attached to an mblk are not particularly useful6357894 uninitialised ipp_hoplimit needs to be cleaned up.6363568 ip_xmit_v6() may be missing IRE releases in error cases6364828 ip_rput_forward needs a makeover6384416 System panics when running as multicast forwarder using multicast tunnels6402382 TX: UDP v6 slowpath is not modified to handle mac_exempt conns6418413 assertion failed ipha->ipha_ident == 0||ipha->ipha_ident == 0xFFFF6420916 assertion failures in ipv6 wput path6430851 use of b_prev to store ifindex is not 100% safe6446106 IPv6 packets stored in nce->nce_qd_mp will be sent with incorrect tcp/udp checksums6453711 SCTP OOTB sent as if genetated by global zone6465212 ARP/IP merge should remove ire_freemblk.esballoc6490163 ip_input() could misbehave if the first mblk's size is not big enough6496664 missing ipif_refrele leads to reference leak and deferred crash in ip_wput_ipsec_out_v66504856 memory leak in ip_fanout_proto_v6() when using link local outer tunnel addresses6507765 IRE cache hash function performs badly6510186 IP_FORWARD_PROG bit is easily overlooked6514727 cgtp ipv6 failure on snv546528286 MULTIRT (CGTP) should offload checksum to hardware6533904 SCTP: doesn't support traffic class for IPv66539415 TX: ipif source selection is flawed for unlabeled gateways6539851 plumbed unworking nic blocks sending broadcast packets6564468 non-solaris SCTP stack over rawip socket: netstat command counts rawipInData not rawipOutDatagrams6568511 ipIfStatsOutDiscards not bumped when discarding an ipsec packet on the wrong NIC6584162 tcp_g_q_inactive() makes incorrect use of taskq_dispatch()6603974 round-robin default with many interfaces causes infinite temporary IRE thrashing6611750 ilm_lookup_ill_index_v4 was born an orphan6618423 ip_wput_frag_mdt sends out packets that void pfhooks6620964 IRE max bucket count calculations performed in ip_ire_init() are flawed6626266 various _broadcasts seem redundant6638182 IP_PKTINFO + SO_DONTROUTE + CIPSO IP option == panic6647710 IPv6 possible DoS vulnerability6657357 nce should be kmem_cache alloc'ed from an nce_cache.6685131 ilg_add -> conn_ilg_alloc interacting with conn_ilg[] walkers can cause panic.6730298 adding 0.0.0.0 key with mask != 0 causes 'route delete default' to fail6730976 vni and ipv6 doesn't quite work.6740956 assertion failed: mp->b_next == 0L && mp->b_prev == 0L in nce_queue_mp_common()6748515 BUMP_MIB() is occasionally done on the wrong ill6753250 ip_output_v6() `notv6' error path has an errant ill_refrele()6756411 NULL-pointer dereference in ip_wput_local()6769582 IP must forward packet returned from FW-HOOK6781525 bogus usesrc usage leads directly to panic6422839 System paniced in ip_multicast_loopback due to NULL pointer dereference6785521 initial IPv6 DAD solicitation is dropped in ip_newroute_ipif_v6()6787370 ipnet devices not seeing forwarded IP packets on outgoing interface6791187 ip*dbg() calls in ip_output_options() claim to originate from ip_wput()6794047 nce_fp_mp prevents sharing of NCEs across an IPMP group6797926 many unnecessary ip0dbg() in ip_rput_data_v66846919 Packet queued for ND gets sent in the clear.6856591 ping doesn't send packets with DF set6861113 arp module has incorrect dependency path for hook module6865664 IPV6_NEXTHOP does not work with TCP socket6874681 No ICMP time exceeded when a router receives packet with ttl = 06880977 ip_wput_ire() uses over 1k of stack6595433 IPsec performance could be significantly better when calling hw crypto provider synchronously6848397 ifconfig down of an interface can hang.6849602 IPV6_PATHMTU size issue for UDP6885359 Add compile-time option for testing pure IPsec overhead6889268 Odd loopback source address selection with IPMP6895420 assertion failed: connp->conn_helper_info == NULL6851189 Routing-related panic occurred during reboot on T2000 system running snv_1176896174 Post-async-encryption, AH+ESP packets may have misinitialized ipha/ip66896687 iptun presents IPv6 with an MTU < 12806897006 assertion failed: ipif->ipif_id != 0 in ip_sioctl_slifzone_restart
PSARC 2009/411 API for per endpoint sctp statistics.6808307 need access to the included SCTP counters
6753556 When receiving INIT_ACK with missing mandatory parameter the resulting ABORT chunk is malformed.
PSARC/2007/272 Project Clearview: IPMP RearchitecturePSARC/2008/773 IPQoS if_groupname Selector RemovalPSARC/2009/001 Move in.mpathd into /lib/inet6783149 Clearview IPMP Rearchitecture4472956 lib
PSARC/2007/272 Project Clearview: IPMP RearchitecturePSARC/2008/773 IPQoS if_groupname Selector RemovalPSARC/2009/001 Move in.mpathd into /lib/inet6783149 Clearview IPMP Rearchitecture4472956 libipmp should provide administrative interfaces4494577 ipmp is opaque - there's no way to get current status4509788 IPMP's usage of interface flags is not backward compatible4509869 IPMP's address move mechanism needs to be transparent to applications4531232 "in.rdiscd: sendto: Bad file number" seen during IPMP DR4533876 new instances of interfaces under ipmp are generated with each dr/op4699003 in.mpathd should squawk if interfaces in a group have the same hwaddr4704937 SUNW_ip_rcm.so is sloppy with strings4713308 IPMP shouldn't failover unconfigured logical interfaces4785694 non-homogeneous IPMP group does not do failback4850407 if_mpadm and IPMP DR failure5015757 ip can panic with ASSERT(attach_ill == ipif->ipif_ill) failure5086201 in.ndpd's phyint_reach_random() spews "SIOCSLIFLNKINFO Invalid argument"6184000 routes cannot be created on failed interfaces6246564 if_mpadm -r <ifname> doesn't bring up IPv6 link-local data address6359058 SIOCLIFFAILBACK repeatedly fails with EAGAIN; in.mpathd fills logs6359536 enabling STANDBY on an interface with no test address acts oddly6378487 in.dhcpd doesn't work well in an IPMP setup6462335 cannot offline to IPMP interfaces that have no probe targets6516992 in.routed spews "Address already in use" during IPMP address move6518460 ip_rcm`update_pif() must remain calm when logical interfaces disappear6549957 failed IP interfaces at boot may go unreported6591186 rpcbind can't deal with indirect calls if all addresses are deprecated6667143 NCE_F_UNSOL_ADV broken6698480 IGMP version not retained during IPMP failover6726235 IPMP group failure can sometimes lead to an extra failover6726645 in.routed skips DEPRECATED addresses even when no others exist6738310 ip_ndp_recover() checks IPIF_CONDEMNED on the wrong ipif flags field6739454 system panics at sdpib`sdp_rts_announce6739531 IPv6 DAD doesn't work well with IPMP6740719 in.mpathd may fail to switch to router target mode6743260 ipif_resolver_up() can fail and leave ARP bringup pending6746613 ip's DL_NOTE_SDU_SIZE logic mishandles ill_max_frag < ill_max_mtu6748145 in.ndpd's IPv6 link-local hardware address mappings can go stale6753560 ilg_delete_all() can race with ill_delete_tail() when ilg_ill changes6755987 stillborn IFF_POINTOPOINT in.mpathd logic should be hauled out6775126 SUBDIRS ipsecutils element does not in order be6775811 NCEs can get stuck in ND_INCOMPLETE if ARP fails when IPMP is in-use6777496 receive-side ILL_HCKSUM_CAPABLE checks look at the wrong ill6781488 IPSQ timer restart logic can deadlock under stress6781883 ip_ndp_find_solicitation() can be passed adverts, and has API issues6784852 RPCIB, SDP, and RDS all break when vanity naming is used6786048 IPv6 ND probes create IREs with incorrect source addresses6786091 I_PLINK handling in IP must not request reentry via ipsq_try_enter()6786711 IPQoS if_groupname selector needs to go6787091 assertion failure in ipcl_conn_cleanup() due to non-NULL conn_ilg6789235 INADDR_ANY ILMs can trigger an assertion failure in IPMP environments6789502 ipif_resolver_up() calls after ipif_ndp_up() clobber ipif_addr_ready6789718 ip6.tun0 cannot be plumbed in a non-global-zone post-67452886789732 libdlpi may get stuck in i_dlpi_strgetmsg()6789870 ipif6_dup_recovery() may operate on a freed ipif, corrupting memory6789874 ipnet_nicevent_cb() may call taskq_dispatch() on a bogus taskq6790310 in.mpathd may core with "phyint_inst_timer: invalid state 4"--HG--rename : usr/src/lib/libinetutil/common/inetutil4.c => usr/src/lib/libinetutil/common/inetutil.crename : usr/src/uts/common/inet/vni/vni.c => usr/src/uts/common/inet/dlpistub/dlpistub.crename : usr/src/uts/common/inet/vni/vni.conf => usr/src/uts/common/inet/dlpistub/dlpistub.confrename : usr/src/uts/common/inet/vni/vni_impl.h => usr/src/uts/common/inet/dlpistub/dlpistub_impl.hrename : usr/src/uts/intel/vni/Makefile => usr/src/uts/intel/dlpistub/Makefilerename : usr/src/uts/sparc/vni/Makefile => usr/src/uts/sparc/dlpistub/Makefile
PSARC 2007/587 Volo -- Low Latency Socket FrameworkPSARC 2008/694 Volo Interfaces Amendment6765829 Integration of project Volo PSARC/2007/5876644935 mblk cred_t reference counting limits scalabili
PSARC 2007/587 Volo -- Low Latency Socket FrameworkPSARC 2008/694 Volo Interfaces Amendment6765829 Integration of project Volo PSARC/2007/5876644935 mblk cred_t reference counting limits scalability6693633 TCP receive does not scale because of heavy refcounting of cred structures4764841 connect/accept is slow on Solaris when compared to Linux5105708 socket creation retains hold on accessvp4764836 setsockopt is slow on Solaris when compared to Linux4772191 socket close(2) is slow on Solaris when compared to Linux--HG--rename : usr/src/uts/common/fs/sockfs/socksctp.c => usr/src/uts/common/inet/sockmods/socksctp.crename : usr/src/uts/common/fs/sockfs/socksctp.h => usr/src/uts/common/inet/sockmods/socksctp.hrename : usr/src/uts/common/fs/sockfs/socksctpsubr.c => usr/src/uts/common/inet/sockmods/socksctpsubr.crename : usr/src/uts/common/fs/sockfs/socksdp.c => usr/src/uts/common/inet/sockmods/socksdp.crename : usr/src/uts/common/fs/sockfs/socksdp.h => usr/src/uts/common/inet/sockmods/socksdp.h
6739142 SCTP does not process unrecognised parameter in INIT-ACK correctly
6647758 SMB over plain-TCP (port 445)
PSARC 2008/302 DTrace IP Provider6640019 DTrace IP Provider6655707 sdt arguments are off-by-one past the 5th6667364 /usr/demo/dtrace/index.html: URLs to dtrace guide chapters wrong--HG--rename
PSARC 2008/302 DTrace IP Provider6640019 DTrace IP Provider6655707 sdt arguments are off-by-one past the 5th6667364 /usr/demo/dtrace/index.html: URLs to dtrace guide chapters wrong--HG--rename : usr/src/lib/libdtrace/common/net.d => deleted_files/usr/src/lib/libdtrace/common/net.d
6500185 getaddrinfo() does not work with SCTP6536383 SCTP : typo for sctp_adaptation_layer_event
PSARC 2007/631 Class E IP Address Configuration6605607 Remove Class-E checks from kernel6613928 ip_fast_forward should make direct call to GLD instead of putnext
PSARC/2007/639 IP_BROADCAST_TTL socket option6625507 DHCP client TTL hack needs to be restored6628105 ill_dhcpinit hack in ip_input() must be more tolerant of mblk layout
PSARC/2007/565 IP_XMIT_IF removal and IP_BOUND_IF rationalizationPSARC/2007/571 IP_DHCPINIT_IF socket option4354207 dhcpagent should use sockets rather than DLPI6533610 IP_XMIT_IF should fade from
PSARC/2007/565 IP_XMIT_IF removal and IP_BOUND_IF rationalizationPSARC/2007/571 IP_DHCPINIT_IF socket option4354207 dhcpagent should use sockets rather than DLPI6533610 IP_XMIT_IF should fade from in.routed's view6607674 DHCP client's "checkaddr" warnings have output reversed6607676 DHCP client misreports dhcp_bound_complete as configure_bound6609845 torch IP_XMIT_IF and complete IP_BOUND_IF6609852 need a way to receive IP unicast DHCP traffic before lease acquisition6609868 IP should create broadcast IREs when bringing up 0.0.0.06616106 IP_UNSPEC_SRC sockets should skip calls to ipif_select_source()--HG--rename : usr/src/cmd/cmd-inet/sbin/dhcpagent/dlpi_io.c => deleted_files/usr/src/cmd/cmd-inet/sbin/dhcpagent/dlpi_io.crename : usr/src/cmd/cmd-inet/sbin/dhcpagent/dlpi_io.h => deleted_files/usr/src/cmd/cmd-inet/sbin/dhcpagent/dlpi_io.hrename : usr/src/cmd/cmd-inet/sbin/dhcpagent/inc.flg => deleted_files/usr/src/cmd/cmd-inet/sbin/dhcpagent/inc.flg
PSARC 2007/449 Detangle IPsec NAT Traversal6481450 nattymod calls putnext() on a freed queue.6558864 remove nattymod6558870 Implement SA last-used time and idle actions6582318 "mandatory" is spel
PSARC 2007/449 Detangle IPsec NAT Traversal6481450 nattymod calls putnext() on a freed queue.6558864 remove nattymod6558870 Implement SA last-used time and idle actions6582318 "mandatory" is spelled wrong in pfiles6584011 save_assoc() gets confused w.r.t. "proto".6588015 Missing "encap udp" must be better diagnosed by ipseckey(1M).6595368 Need "ipsec-nat-t" in /etc/services6595877 ipseckey(1M) can produce output it can't read back in (line-too-big)--HG--rename : usr/src/uts/common/inet/ip/nattymod.c => deleted_files/usr/src/uts/common/inet/ip/nattymod.crename : usr/src/uts/intel/nattymod/Makefile => deleted_files/usr/src/uts/intel/nattymod/Makefilerename : usr/src/uts/sparc/nattymod/Makefile => deleted_files/usr/src/uts/sparc/nattymod/Makefile
PSARC 2005/562 Multicast DNS and Service Discovery6550311 Multicast DNS and service discovery support
6570111 in.routed should filter out routes with IPv4 link local address
6534590 UNIX03/UNIX98: *vsx* PROTO_SDP symbol exposed in Standards namespace
PSARC 2006/366 IP Instances6289221 RFE: Need virtualized ip-stack for each local zone6512601 panic in ipsec_in_tag - allocation failure6514637 error message from dhcpagent: add_pkt_opt: option typ
PSARC 2006/366 IP Instances6289221 RFE: Need virtualized ip-stack for each local zone6512601 panic in ipsec_in_tag - allocation failure6514637 error message from dhcpagent: add_pkt_opt: option type 60 is missing required value6364643 RFE: allow persistent setting of interface flags per zone6307539 RFE: Invalid network address causes zone boot failure5041214 Allow IPMP configuration with zones5005887 RFE: zoneadmd should support plumbing an interface via DHCP4991139 RFE: zones should provide a mechanism to configure a defaultrouter for a zone6218378 zoneadmd doesn't set the netmask for non-loopback addresses hosted on lo04963280 zones: need to virtualize the IPv6 default address selection mechanism4963285 zones: need support of stateless address autoconfiguration for IPv65048068 zones don't boot if one of its interfaces has failed5057154 RFE: ability to change interface status from within a zone4963287 zones should support the plumbing of the first (and only) logical interface4978517 TCP privileged port space should be partitioned per zone5023347 zones don't work well with network routes other than default4963372 investigate whether global zone can act as a router for local zones6378364 RFE: Allow each zone to have its own virtual IPFilter
PSARC 2006/597 DHCPv6 Client4863327 dhcp client causes drag6369116 dhcpagent doesn't notice when logical interfaces disappear6386331 dhcpagent should implement RFC 4361 client identifier6450744 d
PSARC 2006/597 DHCPv6 Client4863327 dhcp client causes drag6369116 dhcpagent doesn't notice when logical interfaces disappear6386331 dhcpagent should implement RFC 4361 client identifier6450744 dhcpagent prevents aggrs from being deleted6462355 impact of RELEASE_ON_SIGTERM should be clearer6464136 Solaris should support the client side of DHCPv66482163 libxnet lint library lacks __EXTENSIONS__6485164 dead rule_zone_specific() rule in ipif_select_source_v6()6487534 snoop "dhcp" filtering keyword doesn't actually work6487958 async internal timeout can trample on renew/rebind timer
PSARC 2003/064 SDP: Sockets Direct Protocol5068505 Integration of PSARC 2003/064 SDP into solaris6503394 TX introduced an incorrect assert: ASSERT(!connp->conn_mac_exempt);
12