Subject: Re: HEADS UP: pf from OpenBSD 3.7 imported
To: None <current-users@netbsd.org>
From: matthew sporleder <msporleder@gmail.com>
List: current-users
Date: 07/01/2005 10:13:44
Is this pflkm, or in-kernel?

On 7/1/05, Peter Postma <peter@pointless.nl> wrote:
> I've imported pf from OpenBSD 3.7 into NetBSD -current.
>=20
> This brings us the following new features:
>=20
> * Support limiting TCP connections by establishment rate, automatically
>   adding flooding IP addresses to tables and flushing states
>   (max-src-conn-rate, overload <table>, flush global).
> * Improved functionality of tags (tag and tagged for translation rules,
>   tagging of all packets matching state entries).
> * Improved diagnostics (error messages and additional counters from pfctl=
 -si).
> * New keyword set skip on to skip filtering on arbitrary interfaces,
>   like loopback.
> * Several bugfixes improving stability.
>