Subject: Re: New IP filter code
To: Jonathan Stone <jonathan@dsg.stanford.edu>
From: Perry E. Metzger <perry@piermont.com>
List: tech-kern
Date: 04/01/1997 21:04:35
Jonathan Stone writes:
> 
> Executive summary:
> 
> The [sic] fix in NetBSD's ip_fil is perceived by security-weenies
> as a security flaw.

Actually, as it turns out, I was being stupid. The filtering is
activated before the interfaces are configured, thus assuring that
there will not be a problem.

Perry