| /freebsd/contrib/netbsd-tests/ipf/expected/ |
| H A D | i8 | 1 pass in inet proto icmp from 127.0.0.1/32 to 127.0.0.1/32 icmp-type timest 2 block in inet proto icmp from any to any icmp-type unreach code 1 3 pass in inet proto icmp from any to any icmp-type unreach code 15 4 pass in inet proto icmp from any to any icmp-type unreach code 13 5 pass in inet proto icmp from any to any icmp-type unreach code 8 6 pass in inet proto icmp from any to any icmp-type unreach code 4 7 pass in inet proto icmp from any to any icmp-type unreach code 9 8 pass in inet proto icmp from any to any icmp-type unreach code 11 9 pass in inet proto icmp from any to any icmp-type unreach code 14 10 pass in inet proto icmp from any to any icmp-type unreach code 10 [all …]
|
| H A D | i12 | 1 pass in inet from 1.1.1.1/32 to 2.2.2.2/32 2 pass in inet from 2.2.2.0/24 to 4.4.4.4/32 3 pass in inet from 3.3.3.3/32 to 4.4.4.4/32 4 pass in inet from 2.2.2.0/24 to 5.5.5.5/32 5 pass in inet from 3.3.3.3/32 to 5.5.5.5/32 6 pass in inet from 2.2.2.0/24 to 6.6.6.6/32 7 pass in inet from 3.3.3.3/32 to 6.6.6.6/32 8 pass in inet from 2.2.2.0/24 to 5.5.5.5/32 port = 22 9 pass in inet from 3.3.3.3/32 to 5.5.5.5/32 port = 22 10 pass in inet from 2.2.2.0/24 to 6.6.6.6/32 port = 22 [all …]
|
| H A D | i3 | 2 pass in inet from 128.16.0.0/16 to 129.10.10.0/24 3 pass in inet from 128.0.0.0/24 to 128.0.0.0/16 4 pass in inet from 128.0.0.0/24 to 128.0.0.0/16 5 pass in inet from 128.0.0.0/24 to 128.0.0.0/16 6 pass in inet from 128.0.0.0/24 to 128.0.0.0/16 7 pass in inet from 128.0.0.0/24 to 128.0.0.0/16 8 pass in inet from 127.0.0.1/32 to 127.0.0.1/32 9 block in log inet from any to any
|
| /freebsd/sbin/pfctl/tests/files/ |
| H A D | pf0004.ok | 6 block drop in inet from 10.0.0.0/8 to any 7 block drop in inet from ! 10.0.0.0/8 to any 8 block drop in inet from 10.0.0.0/8 to any 9 block drop in inet from 172.16.0.0/12 to any 15 block drop in inet proto tcp from 10.0.0.0/8 port = ssh to 192.168.0.0/16 port = ircd 16 block drop in inet proto tcp from 10.0.0.0/8 port = ssh to 192.168.0.0/16 port = 6668 17 block drop in inet proto tcp from 10.0.0.0/8 port = ssh to 192.168.0.0/16 port 6669:65535 18 block drop in inet proto tcp from 10.0.0.0/8 port = ftp to 192.168.0.0/16 port = ircd 19 block drop in inet proto tcp from 10.0.0.0/8 port = ftp to 192.168.0.0/16 port = 6668 20 block drop in inet proto tcp from 10.0.0.0/8 port = ftp to 192.168.0.0/16 port 6669:65535 [all …]
|
| H A D | pf0087.ok | 1 pass in on lo1000000 inet proto tcp from any to 10.0.0.2 port = ssh flags S/SA keep state 2 pass in on lo1000001 inet proto tcp from 10.0.0.1 port = ssh to 10.0.0.2 flags S/SA keep state 3 pass in on lo1000001 inet proto udp from 10.0.0.5 to 10.0.0.4 port = domain keep state 4 pass in on lo1000000 inet proto udp from any to 10.0.0.2 port = domain keep state 5 pass in inet proto tcp from any to 10.0.0.1 port = http flags S/SA keep state 6 pass out on lo1000001 inet proto udp from any to 10.0.0.2 port = domain keep state 7 pass in inet proto tcp from any to 10.0.0.3 port = http flags S/SA keep state 8 pass out inet proto tcp from any to 10.0.0.1 port = 81 flags S/SA keep state 9 pass in inet proto udp from any to 10.0.0.3 port = domain keep state 10 pass in on lo1000001 inet proto udp from 10.0.0.2 port = domain to 10.0.0.2 keep state [all …]
|
| H A D | pf0018.ok | 3 match out on lo0 inet from 192.168.1.1 to any nat-to 10.0.0.1 4 match out on lo0 inet proto tcp from 192.168.1.2 to any nat-to 10.0.0.2 5 match out on lo0 inet proto udp from 192.168.1.3 to any nat-to 10.0.0.3 6 match out on lo0 inet proto icmp from 192.168.1.4 to any nat-to 10.0.0.4 7 match out on lo0 inet from 192.168.1.5 to 172.6.1.1 nat-to 127.0.0.1 8 match out on lo0 inet from 192.168.1.5 to 172.14.1.2 nat-to 127.0.0.1 9 match out on lo0 inet from 192.168.1.5 to 172.16.2.0/24 nat-to 127.0.0.1 10 match out on lo0 inet from 192.168.1.6 to 172.6.1.1 nat-to 127.0.0.1 11 match out on lo0 inet from 192.168.1.6 to 172.14.1.2 nat-to 127.0.0.1 12 match out on lo0 inet from 192.168.1.6 to 172.16.2.0/24 nat-to 127.0.0.1 [all …]
|
| H A D | pf0010.in | 2 pass in inet proto icmp all 4 block in inet proto icmp all 6 block return-rst in inet proto tcp all 8 block return-rst(ttl 10) in inet proto tcp all 10 block return-icmp in inet proto icmp all 11 block return-icmp(0) in inet proto icmp all 12 block return-icmp(net-unr) in inet proto icmp all 13 block return-icmp(5) in inet proto icmp all 14 block return-icmp(srcfail) in inet proto icmp all 15 block return-icmp(10) in inet proto icmp all [all …]
|
| H A D | pf0010.ok | 1 pass in inet proto icmp all keep state 3 block drop in inet proto icmp all 5 block return-rst in inet proto tcp all 7 block return-rst(ttl 10) in inet proto tcp all 9 block return-icmp(port-unr) in inet proto icmp all 10 block return-icmp(net-unr) in inet proto icmp all 11 block return-icmp(net-unr) in inet proto icmp all 12 block return-icmp(srcfail) in inet proto icmp all 13 block return-icmp(srcfail) in inet proto icmp all 14 block return-icmp(host-prohib) in inet proto icmp all [all …]
|
| H A D | pf0088.ok | 1 pass in on lo1000000 inet from any to 10.0.0.1 flags S/SA keep state 2 pass in on lo1000000 inet from any to 10.0.0.1 flags S/SA keep state 7 pass on lo1000001 inet from any to 10.0.0.1 flags S/SA keep state 8 pass on lo1000000 inet from any to 10.0.0.1 flags S/SA keep state 9 pass inet from any to 10.0.0.2 flags S/SA modulate state 10 pass inet from any to 10.0.0.2 flags S/SA keep state 11 block drop inet from 10.0.0.3 to 10.0.0.2 12 pass inet from any to 10.0.0.2 flags S/SA modulate state 13 block drop inet from 10.0.0.3 to 10.0.0.2 14 pass in inet from any to 10.0.0.2 flags S/SA synproxy state [all …]
|
| H A D | pf0039.ok | 1 body1 = "pass in log quick on lo0 inet proto icmp all " 2 body2 = "pass in log quick on lo0 inet proto tcp all " 15 pass in log quick on lo0 inet proto tcp all tos 0x08 keep state fragment label "blah" 16 pass in log quick on lo0 inet proto tcp all user = 3 group = 65534 flags S/SA tos 0x08 set ( prio 2… 17 pass in log quick on lo0 inet proto tcp all user = 3 group = 0 flags S/SA tos 0x08 set ( prio 2 ) k… 18 pass in log quick on lo0 inet proto tcp all user = 0 group = 65534 flags S/SA tos 0x08 set ( prio 2… 19 pass in log quick on lo0 inet proto tcp all user = 0 group = 0 flags S/SA tos 0x08 set ( prio 2 ) k… 20 pass in log quick on lo0 inet proto icmp all icmp-type echorep code 0 set ( prio 2 ) keep state lab… 21 pass in log quick on lo0 inet proto tcp all flags S/SA keep state 22 pass in log quick on lo0 inet proto tcp all flags S/SA tos 0x08 set ( prio 2 ) keep state label "bl… [all …]
|
| H A D | pf0020.ok | 5 match out on lo0 inet from 127.0.0.0/24 to 1.2.3.0/25 nat-to 127.0.0.1 6 match out on lo0 inet from 127.0.0.0/24 to 2.4.6.8/30 nat-to 127.0.0.1 7 match out on lo0 inet from 10.0.1.0/24 to 1.2.3.0/25 nat-to 127.0.0.1 8 match out on lo0 inet from 10.0.1.0/24 to 2.4.6.8/30 nat-to 127.0.0.1 9 match in on lo0 inet proto tcp from 127.0.0.0/24 to 1.2.3.0/25 port = ftp rdr-to 127.0.0.1 port 8021 10 match in on lo0 inet proto tcp from 127.0.0.0/24 to 2.4.6.8/30 port = ftp rdr-to 127.0.0.1 port 8021 11 match in on lo0 inet proto tcp from 10.0.1.0/24 to 1.2.3.0/25 port = ftp rdr-to 127.0.0.1 port 8021 12 match in on lo0 inet proto tcp from 10.0.1.0/24 to 2.4.6.8/30 port = ftp rdr-to 127.0.0.1 port 8021 13 match in on lo1000000 inet proto tcp from 127.0.0.0/24 to 1.2.3.0/25 port = ftp rdr-to 127.0.0.1 po… 14 match in on lo1000000 inet proto tcp from 127.0.0.0/24 to 2.4.6.8/30 port = ftp rdr-to 127.0.0.1 po… [all …]
|
| H A D | pf0011.in | 1 pass in inet proto icmp all icmp-type 0 2 pass in inet proto icmp all icmp-type 0 code 0 3 pass in inet proto icmp all icmp-type 1 4 pass in inet proto icmp all icmp-type 1 code 1 9 block in inet proto icmp all icmp-type 0 10 block in inet proto icmp all icmp-type 0 code 0 11 block in inet proto icmp all icmp-type 1 12 block in inet proto icmp all icmp-type 1 code 1 17 pass in inet proto icmp all icmp-type unreach code needfrag
|
| H A D | pf0011.ok | 1 pass in inet proto icmp all icmp-type echorep keep state 2 pass in inet proto icmp all icmp-type echorep code 0 keep state 3 pass in inet proto icmp all icmp-type 1 keep state 4 pass in inet proto icmp all icmp-type 1 code 1 keep state 9 block drop in inet proto icmp all icmp-type echorep 10 block drop in inet proto icmp all icmp-type echorep code 0 11 block drop in inet proto icmp all icmp-type 1 12 block drop in inet proto icmp all icmp-type 1 code 1 17 pass in inet proto icmp all icmp-type unreach code needfrag keep state
|
| H A D | pf0019.ok | 5 match in on lo0 inet proto tcp from any to 1.2.3.4 port = 2222 rdr-to 10.0.0.10 port 22 6 match in on lo0 inet proto tcp from 127.0.0.0/24 to 1.2.3.0/25 port = ftp rdr-to 127.0.0.1 port 8021 7 match in on lo0 inet proto tcp from 127.0.0.0/24 to 2.4.6.8/30 port = ftp rdr-to 127.0.0.1 port 8021 8 match in on lo0 inet proto tcp from 10.0.1.0/24 to 1.2.3.0/25 port = ftp rdr-to 127.0.0.1 port 8021 9 match in on lo0 inet proto tcp from 10.0.1.0/24 to 2.4.6.8/30 port = ftp rdr-to 127.0.0.1 port 8021 10 match in on lo1000000 inet proto tcp from 127.0.0.0/24 to 1.2.3.0/25 port = ftp rdr-to 127.0.0.1 po… 11 match in on lo1000000 inet proto tcp from 127.0.0.0/24 to 2.4.6.8/30 port = ftp rdr-to 127.0.0.1 po… 12 match in on lo1000000 inet proto tcp from 10.0.1.0/24 to 1.2.3.0/25 port = ftp rdr-to 127.0.0.1 por… 13 match in on lo1000000 inet proto tcp from 10.0.1.0/24 to 2.4.6.8/30 port = ftp rdr-to 127.0.0.1 por…
|
| H A D | pf0005.ok | 4 block drop in inet proto udp from 10.0.0.0/8 port = echo to 12.34.56.78 port = 6667 5 block drop in inet proto udp from 10.0.0.0/8 port = echo to 12.34.56.78 port = 16 6 block drop in inet proto udp from 10.0.0.0/8 port = ssh to 12.34.56.78 port = 6667 7 block drop in inet proto udp from 10.0.0.0/8 port = ssh to 12.34.56.78 port = 16 8 block drop in inet proto udp from 10.0.0.0/8 port = ftp to 12.34.56.78 port = 6667 9 block drop in inet proto udp from 10.0.0.0/8 port = ftp to 12.34.56.78 port = 16 10 block drop in inet proto udp from 10.0.0.0/8 port = auth to 12.34.56.78 port = 6667 11 block drop in inet proto udp from 10.0.0.0/8 port = auth to 12.34.56.78 port = 16
|
| /freebsd/share/man/man4/ |
| H A D | tcp_rack.4 | 42 net.inet.tcp.functions_default=rack 62 .Va net.inet.tcp.rack 67 .It Va net.inet.tcp.rack.misc 69 .It Va net.inet.tcp.rack.features 71 .It Va net.inet.tcp.rack.measure 73 .It Va net.inet.tcp.rack.timers 75 .It Va net.inet.tcp.rack.tlp 77 .It Va net.inet.tcp.rack.timely 79 .It Va net.inet.tcp.rack.hdwr_pacing 81 .It Va net.inet.tcp.rack.pacing [all …]
|
| H A D | syncache.4 | 24 .Nm sysctl Cm net.inet.tcp.syncookies 26 .Nm sysctl Cm net.inet.tcp.syncookies_only 31 .Nm sysctl Cm net.inet.tcp.syncache.hashsize 33 .Nm sysctl Cm net.inet.tcp.syncache.bucketlimit 35 .Nm sysctl Cm net.inet.tcp.syncache.cachelimit 37 .Nm sysctl Cm net.inet.tcp.syncache.rexmtlimit 39 .Nm sysctl Cm net.inet.tcp.syncache.count 41 .Nm sysctl Cm net.inet.tcp.syncache.see_other 43 .Nm sysctl Cm net.inet.tcp.syncache.rst_on_sock_fail 110 .Va net.inet.tcp.syncookies_only [all …]
|
| H A D | ipsec.4 | 51 .Xr ( inet 4 92 .It "net.inet.ipsec.filtertunnel 0 1" 188 .It "net.inet.ipsec.esp_trans_deflev integer yes" 189 .It "net.inet.ipsec.esp_net_deflev integer yes" 190 .It "net.inet.ipsec.ah_trans_deflev integer yes" 191 .It "net.inet.ipsec.ah_net_deflev integer yes" 213 .It "net.inet.ipsec.def_policy integer yes" 223 .Bl -column net.inet.ipcomp.ipcomp_enable 225 .It "net.inet.esp.esp_enable On" 226 .It "net.inet.ah.ah_enable On" [all …]
|
| /freebsd/tools/tools/sysdoc/ |
| H A D | tunables.mdoc | 1245 net.inet.accf.unloadable 1248 net.inet.icmp.bmcastecho 1251 net.inet.icmp.drop_redirect 1254 net.inet.icmp.icmplim 1257 net.inet.icmp.icmplim_output 1260 net.inet.icmp.log_redirect 1263 net.inet.icmp.maskfake 1266 net.inet.icmp.maskrepl 1269 net.inet.ip.accept_sourceroute 1275 net.inet.ip.rfc1122_strong_es [all …]
|
| /freebsd/libexec/rc/rc.d/ |
| H A D | routing | 38 for _a in inet inet6; do 67 for _a in inet inet6; do 113 ${ROUTE_CMD} -n flush -inet 152 route__loopback="-inet 127.0.0.1 -iface lo0 ${_fibmod}" 354 ropts_init inet 356 ${SYSCTL} net.inet.icmp.bmcastecho=1 > /dev/null 358 ${SYSCTL} net.inet.icmp.bmcastecho=0 > /dev/null 372 ropts_init inet 374 ${SYSCTL} net.inet.icmp.drop_redirect=1 > /dev/null 376 ${SYSCTL} net.inet.icmp.drop_redirect=0 > /dev/null [all …]
|
| H A D | netoptions | 31 for _af in inet inet6; do 43 ${SYSCTL} net.inet.tcp.log_in_vain=${log_in_vain} >/dev/null 44 ${SYSCTL} net.inet.udp.log_in_vain=${log_in_vain} >/dev/null 47 ${SYSCTL} net.inet.tcp.log_in_vain=0 >/dev/null 48 ${SYSCTL} net.inet.udp.log_in_vain=0 >/dev/null 53 ${SYSCTL} net.inet.tcp.rfc1323=1 >/dev/null 57 ${SYSCTL} net.inet.tcp.rfc1323=0 >/dev/null 61 ${SYSCTL} net.inet.tcp.always_keepalive=1 >/dev/null 65 ${SYSCTL} net.inet.tcp.always_keepalive=0 >/dev/null 71 ${SYSCTL} net.inet.tcp.drop_synfin=1 >/dev/null [all …]
|
| /freebsd/sys/dev/qlxgbe/ |
| H A D | README.txt | 63 Please run "sysctl kern.ipc" and "sysctl net.inet.tcp" and see if these 72 net.inet.tcp.recvbuf_max=262144 73 net.inet.tcp.recvbuf_inc=16384 75 net.inet.tcp.recvspace=131072 76 net.inet.tcp.sendbuf_max=262144 77 net.inet.tcp.sendspace=65536 85 sysctl net.inet.tcp.recvbuf_max=262144 86 sysctl net.inet.tcp.recvbuf_inc=16384 88 sysctl net.inet.tcp.recvspace=131072 89 sysctl net.inet.tcp.sendbuf_max=262144 [all …]
|
| /freebsd/share/examples/netgraph/ |
| H A D | udp.tunnel | 26 ifconfig ng0 inet down delete >/dev/null 2>&1 29 ngctl mkpeer iface dummy inet 32 # Attach a UDP socket to the ``inet'' hook of the interface node 35 ngctl mkpeer ng0: ksocket inet inet/dgram/udp 39 ngctl msg ng0:inet bind inet/${LOC_EXTERIOR_IP}:${UDP_TUNNEL_PORT} 43 ngctl msg ng0:inet connect inet/${REM_EXTERIOR_IP}:${UDP_TUNNEL_PORT}
|
| /freebsd/tests/sys/netpfil/pf/ |
| H A D | nat.sh | 53 jexec nat sysctl net.inet.ip.forwarding=1 64 …"nat pass on ${epair_echo}a inet from 192.0.2.0/24 to any -> (${epair_echo}a) port 30000:30001 sti… 147 jexec nat sysctl net.inet.ip.forwarding=1 252 "nat on ${epair_nat}a inet from ! (${epair_nat}a) to any -> (${epair_nat}a)" \ 253 "nat on ${epair_nat}a inet from ! (${epair_nat}a) to any -> (${epair_nat}a) endpoint-independent" 275 "pass out on ${epair_nat}a inet from ! (${epair_nat}a) to any nat-to (${epair_nat}a) keep state" \ 276 …"pass out on ${epair_nat}a inet from ! (${epair_nat}a) to any nat-to (${epair_nat}a) endpoint-inde… 358 jexec rtr sysctl net.inet.ip.forwarding=1 366 "nat on ${epair_wan}b inet from 198.51.100.0/24 -> <empty> ${option}" \ 431 jexec rtr sysctl net.inet.ip.forwarding=1 [all …]
|
| /freebsd/sys/dev/qlxgb/ |
| H A D | README.txt | 68 net.inet.tcp.recvbuf_max=262144 69 net.inet.tcp.recvbuf_inc=16384 72 net.inet.tcp.recvspace=131072 73 net.inet.tcp.sendbuf_max=262144 74 net.inet.tcp.sendspace=65536 81 sysctl net.inet.tcp.recvbuf_max=262144 82 sysctl net.inet.tcp.recvbuf_inc=16384 85 sysctl net.inet.tcp.recvspace=131072 86 sysctl net.inet.tcp.sendbuf_max=262144 87 sysctl net.inet.tcp.sendspace=65536
|