From owner-svn-doc-all@freebsd.org Sun Feb 24 20:31:16 2019 Return-Path: Delivered-To: svn-doc-all@mailman.ysv.freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2610:1c1:1:606c::19:1]) by mailman.ysv.freebsd.org (Postfix) with ESMTP id AFDE0150A59C; Sun, 24 Feb 2019 20:31:16 +0000 (UTC) (envelope-from brueffer@FreeBSD.org) Received: from mxrelay.nyi.freebsd.org (mxrelay.nyi.freebsd.org [IPv6:2610:1c1:1:606c::19:3]) (using TLSv1.3 with cipher TLS_AES_256_GCM_SHA384 (256/256 bits) server-signature RSA-PSS (4096 bits) client-signature RSA-PSS (4096 bits) client-digest SHA256) (Client CN "mxrelay.nyi.freebsd.org", Issuer "Let's Encrypt Authority X3" (verified OK)) by mx1.freebsd.org (Postfix) with ESMTPS id 5172885AE4; Sun, 24 Feb 2019 20:31:16 +0000 (UTC) (envelope-from brueffer@FreeBSD.org) Received: from repo.freebsd.org (repo.freebsd.org [IPv6:2610:1c1:1:6068::e6a:0]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (Client did not present a certificate) by mxrelay.nyi.freebsd.org (Postfix) with ESMTPS id 2B999A740; Sun, 24 Feb 2019 20:31:16 +0000 (UTC) (envelope-from brueffer@FreeBSD.org) Received: from repo.freebsd.org ([127.0.1.37]) by repo.freebsd.org (8.15.2/8.15.2) with ESMTP id x1OKVGI8023206; Sun, 24 Feb 2019 20:31:16 GMT (envelope-from brueffer@FreeBSD.org) Received: (from brueffer@localhost) by repo.freebsd.org (8.15.2/8.15.2/Submit) id x1OKVFAv023202; Sun, 24 Feb 2019 20:31:15 GMT (envelope-from brueffer@FreeBSD.org) Message-Id: <201902242031.x1OKVFAv023202@repo.freebsd.org> X-Authentication-Warning: repo.freebsd.org: brueffer set sender to brueffer@FreeBSD.org using -f From: Christian Brueffer Date: Sun, 24 Feb 2019 20:31:15 +0000 (UTC) To: doc-committers@freebsd.org, svn-doc-all@freebsd.org, svn-doc-head@freebsd.org Subject: svn commit: r52830 - in head/en_US.ISO8859-1/htdocs: . releng security X-SVN-Group: doc-head X-SVN-Commit-Author: brueffer X-SVN-Commit-Paths: in head/en_US.ISO8859-1/htdocs: . releng security X-SVN-Commit-Revision: 52830 X-SVN-Commit-Repository: doc MIME-Version: 1.0 Content-Type: text/plain; charset=UTF-8 Content-Transfer-Encoding: 8bit X-Rspamd-Queue-Id: 5172885AE4 X-Spamd-Bar: -- Authentication-Results: mx1.freebsd.org X-Spamd-Result: default: False [-2.95 / 15.00]; local_wl_from(0.00)[FreeBSD.org]; NEURAL_HAM_MEDIUM(-1.00)[-0.996,0]; NEURAL_HAM_SHORT(-0.95)[-0.955,0]; ASN(0.00)[asn:11403, ipnet:2610:1c1:1::/48, country:US]; NEURAL_HAM_LONG(-1.00)[-1.000,0] X-BeenThere: svn-doc-all@freebsd.org X-Mailman-Version: 2.1.29 Precedence: list List-Id: "SVN commit messages for the entire doc trees \(except for " user" , " projects" , and " translations" \)" List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Sun, 24 Feb 2019 20:31:17 -0000 Author: brueffer Date: Sun Feb 24 20:31:15 2019 New Revision: 52830 URL: https://svnweb.freebsd.org/changeset/doc/52830 Log: Fix typos. Modified: head/en_US.ISO8859-1/htdocs/administration.xml head/en_US.ISO8859-1/htdocs/releng/charter.xml head/en_US.ISO8859-1/htdocs/security/security.xml Modified: head/en_US.ISO8859-1/htdocs/administration.xml ============================================================================== --- head/en_US.ISO8859-1/htdocs/administration.xml Sat Feb 23 05:17:20 2019 (r52829) +++ head/en_US.ISO8859-1/htdocs/administration.xml Sun Feb 24 20:31:15 2019 (r52830) @@ -416,7 +416,7 @@ <mirror-admin@FreeBSD.org>

The FTP/WWW Mirror Site Coordinators coordinate all the FTP/WWW - mirror site adminstrators to ensure that they are distributing current + mirror site administrators to ensure that they are distributing current versions of the software, that they have the capacity to update themselves when major updates are in progress, and making it easy for the general public to find their closest FTP/WWW mirror.

Modified: head/en_US.ISO8859-1/htdocs/releng/charter.xml ============================================================================== --- head/en_US.ISO8859-1/htdocs/releng/charter.xml Sat Feb 23 05:17:20 2019 (r52829) +++ head/en_US.ISO8859-1/htdocs/releng/charter.xml Sun Feb 24 20:31:15 2019 (r52830) @@ -61,7 +61,7 @@ pending FreeBSD releases are not affected by recently disclosed vulnerabilities. Also, approximately 1 week after a release, change approval control of release branches (releng/X.Y/) - is transfered from the release engineers to the security-officer + is transferred from the release engineers to the security-officer team. The exact transfer date is to be worked out by the two parties once it is clear that the release was a success. A heads up message should be sent to developers@ at that time.

Modified: head/en_US.ISO8859-1/htdocs/security/security.xml ============================================================================== --- head/en_US.ISO8859-1/htdocs/security/security.xml Sat Feb 23 05:17:20 2019 (r52829) +++ head/en_US.ISO8859-1/htdocs/security/security.xml Sun Feb 24 20:31:15 2019 (r52830) @@ -208,7 +208,7 @@

For more information, see the official - annoucement sent in November, 2018.

+ announcement sent in November, 2018.

From owner-svn-doc-all@freebsd.org Tue Feb 26 21:17:44 2019 Return-Path: Delivered-To: svn-doc-all@mailman.ysv.freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2610:1c1:1:606c::19:1]) by mailman.ysv.freebsd.org (Postfix) with ESMTP id 607C2150439F; Tue, 26 Feb 2019 21:17:44 +0000 (UTC) (envelope-from crees@FreeBSD.org) Received: from mxrelay.nyi.freebsd.org (mxrelay.nyi.freebsd.org [IPv6:2610:1c1:1:606c::19:3]) (using TLSv1.3 with cipher TLS_AES_256_GCM_SHA384 (256/256 bits) server-signature RSA-PSS (4096 bits) client-signature RSA-PSS (4096 bits) client-digest SHA256) (Client CN "mxrelay.nyi.freebsd.org", Issuer "Let's Encrypt Authority X3" (verified OK)) by mx1.freebsd.org (Postfix) with ESMTPS id 0444F73B19; Tue, 26 Feb 2019 21:17:44 +0000 (UTC) (envelope-from crees@FreeBSD.org) Received: from repo.freebsd.org (repo.freebsd.org [IPv6:2610:1c1:1:6068::e6a:0]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (Client did not present a certificate) by mxrelay.nyi.freebsd.org (Postfix) with ESMTPS id E92B2AD30; Tue, 26 Feb 2019 21:17:43 +0000 (UTC) (envelope-from crees@FreeBSD.org) Received: from repo.freebsd.org ([127.0.1.37]) by repo.freebsd.org (8.15.2/8.15.2) with ESMTP id x1QLHhkM071502; Tue, 26 Feb 2019 21:17:43 GMT (envelope-from crees@FreeBSD.org) Received: (from crees@localhost) by repo.freebsd.org (8.15.2/8.15.2/Submit) id x1QLHhqM071501; Tue, 26 Feb 2019 21:17:43 GMT (envelope-from crees@FreeBSD.org) Message-Id: <201902262117.x1QLHhqM071501@repo.freebsd.org> X-Authentication-Warning: repo.freebsd.org: crees set sender to crees@FreeBSD.org using -f From: Chris Rees Date: Tue, 26 Feb 2019 21:17:43 +0000 (UTC) To: doc-committers@freebsd.org, svn-doc-all@freebsd.org, svn-doc-head@freebsd.org Subject: svn commit: r52831 - head/en_US.ISO8859-1/books/handbook/firewalls X-SVN-Group: doc-head X-SVN-Commit-Author: crees X-SVN-Commit-Paths: head/en_US.ISO8859-1/books/handbook/firewalls X-SVN-Commit-Revision: 52831 X-SVN-Commit-Repository: doc MIME-Version: 1.0 Content-Type: text/plain; charset=UTF-8 Content-Transfer-Encoding: 8bit X-Rspamd-Queue-Id: 0444F73B19 X-Spamd-Bar: -- Authentication-Results: mx1.freebsd.org X-Spamd-Result: default: False [-2.96 / 15.00]; local_wl_from(0.00)[FreeBSD.org]; NEURAL_HAM_MEDIUM(-1.00)[-0.999,0]; NEURAL_HAM_SHORT(-0.96)[-0.960,0]; ASN(0.00)[asn:11403, ipnet:2610:1c1:1::/48, country:US]; NEURAL_HAM_LONG(-1.00)[-1.000,0] X-BeenThere: svn-doc-all@freebsd.org X-Mailman-Version: 2.1.29 Precedence: list List-Id: "SVN commit messages for the entire doc trees \(except for " user" , " projects" , and " translations" \)" List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Tue, 26 Feb 2019 21:17:44 -0000 Author: crees Date: Tue Feb 26 21:17:43 2019 New Revision: 52831 URL: https://svnweb.freebsd.org/changeset/doc/52831 Log: Document kernel compile options for ipfw Introduce a dedicated interface Use sysrc Submitted by: f.toscan@hotmail.it Reviewed by: bcr Differential Revision: https://reviews.freebsd.org/D18484 Modified: head/en_US.ISO8859-1/books/handbook/firewalls/chapter.xml Modified: head/en_US.ISO8859-1/books/handbook/firewalls/chapter.xml ============================================================================== --- head/en_US.ISO8859-1/books/handbook/firewalls/chapter.xml Sun Feb 24 20:31:15 2019 (r52830) +++ head/en_US.ISO8859-1/books/handbook/firewalls/chapter.xml Tue Feb 26 21:17:43 2019 (r52831) @@ -1329,7 +1329,7 @@ rdr pass on $ext_if inet proto tcp from !<spamd-whi The two tables <spamd> and <spamd-white> are essential. SMTP traffic from an address listed - in <spamd> but not in + in <spamd> but not in <spamd-white> is redirected to the spamd daemon listening at port 8025. @@ -1623,52 +1623,21 @@ block drop out quick on $ext_if from any to $martians< custom kernel is not needed in order to enable IPFW. - - kernel options - - IPFIREWALL - - - - kernel options - - IPFIREWALL_VERBOSE - - - - kernel options - - IPFIREWALL_VERBOSE_LIMIT - - - - IPFW - - kernel options - - For those users who wish to statically compile IPFW support into a custom kernel, - refer to the instructions in . - The following options are available for the - custom kernel configuration file: + see . - options IPFIREWALL # enables IPFW -options IPFIREWALL_VERBOSE # enables logging for rules with log keyword -options IPFIREWALL_VERBOSE_LIMIT=5 # limits number of logged packets per-entry -options IPFIREWALL_DEFAULT_TO_ACCEPT # sets default policy to pass what is not explicitly denied -options IPDIVERT # enables NAT - To configure the system to enable - IPFW at boot time, add the - following entry to /etc/rc.conf: + IPFW at boot time, add + firewall_enable="YES" to + /etc/rc.conf: - firewall_enable="YES" + &prompt.root; sysrc firewall_enable="YES" To use one of the default firewall types provided by &os;, add another line which specifies the type: - firewall_type="open" + &prompt.root; sysrc firewall_type="open" The available types are: @@ -1720,19 +1689,36 @@ options IPDIVERT # enables NAT firewall_script is set to /etc/ipfw.rules: - firewall_script="/etc/ipfw.rules" + &prompt.root; sysrc firewall_script="/etc/ipfw.rules" - To enable logging, include this line: + To enable logging through &man.syslogd.8;, include this + line: - firewall_logging="YES" + &prompt.root; sysrc firewall_logging="YES" There is no /etc/rc.conf variable to set logging limits. To limit the number of times a rule is logged per connection attempt, specify the number using this line in /etc/sysctl.conf: - net.inet.ip.fw.verbose_limit=5 + &prompt.root; sysrc -f /etc/sysctl.conf net.inet.ip.fw.verbose_limit=5 + To enable logging through a dedicated interface named + ipfw0, add this line to + /etc/rc.conf instead: + + &prompt.root; sysrc firewall_logif="YES" + + Then use tcpdump to see what is + being logged: + + &prompt.root; tcpdump -t -n -i ipfw0 + + + There is no overhead due to logging unless + tcpdump is attached. + + After saving the needed edits, start the firewall. To enable logging limits now, also set the sysctl value specified above: @@ -2257,7 +2243,7 @@ good_tcpo="22,25,37,53,80,443,110" $cmd 130 $skip icmp from any to any out via $pif $ks The inbound rules remain the same, except for the very - last rule which removes the via $pif in + last rule which removes the via $pif in order to catch both inbound and outbound rules. The NAT rule must follow this last outbound rule, must have a higher number than that last rule, and the @@ -2609,6 +2595,55 @@ ks="keep-state" # just too lazy to key this eac &prompt.root; ipfw -q add allow tcp from any to 192.0.2.11 53 out via tun0 setup keep-state &prompt.root; ipfw -q add 00611 allow udp from any to 192.0.2.11 53 out via tun0 keep-state + + + + <application>IPFW</application> Kernel Options + + + kernel options + + IPFIREWALL + + + + kernel options + + IPFIREWALL_VERBOSE + + + + kernel options + + IPFIREWALL_VERBOSE_LIMIT + + + + IPFW + + kernel options + + In order to statically compile + IPFW support into a custom kernel, + refer to the instructions in . + The following options are available for the + custom kernel configuration file: + + options IPFIREWALL # enables IPFW +options IPFIREWALL_VERBOSE # enables logging for rules with log keyword to syslogd(8) +options IPFIREWALL_VERBOSE_LIMIT=5 # limits number of logged packets per-entry +options IPFIREWALL_DEFAULT_TO_ACCEPT # sets default policy to pass what is not explicitly denied +options IPFIREWALL_NAT # enables in-kernel NAT support +options IPFIREWALL_NAT64 # enables in-kernel NAT64 support +options IPFIREWALL_NPTV6 # enables in-kernel IPv6 NPT support +options IPFIREWALL_PMOD # enables protocols modification module support +options IPDIVERT # enables NAT through natd(8) + + + IPFW can be loaded as + a kernel module: options above are built by default + as modules or can be set at runtime using tunables. + From owner-svn-doc-all@freebsd.org Wed Feb 27 21:33:15 2019 Return-Path: Delivered-To: svn-doc-all@mailman.ysv.freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2610:1c1:1:606c::19:1]) by mailman.ysv.freebsd.org (Postfix) with ESMTP id 97C0B1505D38; Wed, 27 Feb 2019 21:33:15 +0000 (UTC) (envelope-from bhd@FreeBSD.org) Received: from mxrelay.nyi.freebsd.org (mxrelay.nyi.freebsd.org [IPv6:2610:1c1:1:606c::19:3]) (using TLSv1.3 with cipher TLS_AES_256_GCM_SHA384 (256/256 bits) server-signature RSA-PSS (4096 bits) client-signature RSA-PSS (4096 bits) client-digest SHA256) (Client CN "mxrelay.nyi.freebsd.org", Issuer "Let's Encrypt Authority X3" (verified OK)) by mx1.freebsd.org (Postfix) with ESMTPS id 2E8C990E74; Wed, 27 Feb 2019 21:33:15 +0000 (UTC) (envelope-from bhd@FreeBSD.org) Received: from repo.freebsd.org (repo.freebsd.org [IPv6:2610:1c1:1:6068::e6a:0]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (Client did not present a certificate) by mxrelay.nyi.freebsd.org (Postfix) with ESMTPS id 0F7FC22AAA; Wed, 27 Feb 2019 21:33:15 +0000 (UTC) (envelope-from bhd@FreeBSD.org) Received: from repo.freebsd.org ([127.0.1.37]) by repo.freebsd.org (8.15.2/8.15.2) with ESMTP id x1RLXEGb041571; Wed, 27 Feb 2019 21:33:14 GMT (envelope-from bhd@FreeBSD.org) Received: (from bhd@localhost) by repo.freebsd.org (8.15.2/8.15.2/Submit) id x1RLXEBv041570; Wed, 27 Feb 2019 21:33:14 GMT (envelope-from bhd@FreeBSD.org) Message-Id: <201902272133.x1RLXEBv041570@repo.freebsd.org> X-Authentication-Warning: repo.freebsd.org: bhd set sender to bhd@FreeBSD.org using -f From: Bjoern Heidotting Date: Wed, 27 Feb 2019 21:33:14 +0000 (UTC) To: doc-committers@freebsd.org, svn-doc-all@freebsd.org, svn-doc-head@freebsd.org Subject: svn commit: r52832 - head/en_US.ISO8859-1/books/handbook/security X-SVN-Group: doc-head X-SVN-Commit-Author: bhd X-SVN-Commit-Paths: head/en_US.ISO8859-1/books/handbook/security X-SVN-Commit-Revision: 52832 X-SVN-Commit-Repository: doc MIME-Version: 1.0 Content-Type: text/plain; charset=UTF-8 Content-Transfer-Encoding: 8bit X-Rspamd-Queue-Id: 2E8C990E74 X-Spamd-Bar: -- Authentication-Results: mx1.freebsd.org X-Spamd-Result: default: False [-2.98 / 15.00]; local_wl_from(0.00)[FreeBSD.org]; NEURAL_HAM_MEDIUM(-1.00)[-0.999,0]; NEURAL_HAM_SHORT(-0.98)[-0.984,0]; ASN(0.00)[asn:11403, ipnet:2610:1c1:1::/48, country:US]; NEURAL_HAM_LONG(-1.00)[-0.999,0] X-BeenThere: svn-doc-all@freebsd.org X-Mailman-Version: 2.1.29 Precedence: list List-Id: "SVN commit messages for the entire doc trees \(except for " user" , " projects" , and " translations" \)" List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Wed, 27 Feb 2019 21:33:15 -0000 Author: bhd Date: Wed Feb 27 21:33:14 2019 New Revision: 52832 URL: https://svnweb.freebsd.org/changeset/doc/52832 Log: Fix broken URLs in Kerberos section. Reviewed by: bcr Differential Revision: https://reviews.freebsd.org/D19393 Modified: head/en_US.ISO8859-1/books/handbook/security/chapter.xml Modified: head/en_US.ISO8859-1/books/handbook/security/chapter.xml ============================================================================== --- head/en_US.ISO8859-1/books/handbook/security/chapter.xml Tue Feb 26 21:17:43 2019 (r52831) +++ head/en_US.ISO8859-1/books/handbook/security/chapter.xml Wed Feb 27 21:33:14 2019 (r52832) @@ -1742,7 +1742,7 @@ kadmind5_server_enable="YES" RFC + xlink:href="https://www.ietf.org/rfc/rfc4120.txt">RFC 4120, The Kerberos Network Authentication Service (V5) @@ -1756,7 +1756,7 @@ kadmind5_server_enable="YES" Heimdal + xlink:href="https://www.h5l.org/">Heimdal Kerberos home page From owner-svn-doc-all@freebsd.org Wed Feb 27 22:04:59 2019 Return-Path: Delivered-To: svn-doc-all@mailman.ysv.freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2610:1c1:1:606c::19:1]) by mailman.ysv.freebsd.org (Postfix) with ESMTP id CF2A615068C9; Wed, 27 Feb 2019 22:04:59 +0000 (UTC) (envelope-from bhd@FreeBSD.org) Received: from mxrelay.nyi.freebsd.org (mxrelay.nyi.freebsd.org [IPv6:2610:1c1:1:606c::19:3]) (using TLSv1.3 with cipher TLS_AES_256_GCM_SHA384 (256/256 bits) server-signature RSA-PSS (4096 bits) client-signature RSA-PSS (4096 bits) client-digest SHA256) (Client CN "mxrelay.nyi.freebsd.org", Issuer "Let's Encrypt Authority X3" (verified OK)) by mx1.freebsd.org (Postfix) with ESMTPS id 75166925FF; Wed, 27 Feb 2019 22:04:59 +0000 (UTC) (envelope-from bhd@FreeBSD.org) Received: from repo.freebsd.org (repo.freebsd.org [IPv6:2610:1c1:1:6068::e6a:0]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (Client did not present a certificate) by mxrelay.nyi.freebsd.org (Postfix) with ESMTPS id 9C03622FE9; Wed, 27 Feb 2019 22:04:58 +0000 (UTC) (envelope-from bhd@FreeBSD.org) Received: from repo.freebsd.org ([127.0.1.37]) by repo.freebsd.org (8.15.2/8.15.2) with ESMTP id x1RM4wDt057815; Wed, 27 Feb 2019 22:04:58 GMT (envelope-from bhd@FreeBSD.org) Received: (from bhd@localhost) by repo.freebsd.org (8.15.2/8.15.2/Submit) id x1RM4wPu057814; Wed, 27 Feb 2019 22:04:58 GMT (envelope-from bhd@FreeBSD.org) Message-Id: <201902272204.x1RM4wPu057814@repo.freebsd.org> X-Authentication-Warning: repo.freebsd.org: bhd set sender to bhd@FreeBSD.org using -f From: Bjoern Heidotting Date: Wed, 27 Feb 2019 22:04:58 +0000 (UTC) To: doc-committers@freebsd.org, svn-doc-all@freebsd.org, svn-doc-head@freebsd.org Subject: svn commit: r52833 - head/de_DE.ISO8859-1/books/handbook/security X-SVN-Group: doc-head X-SVN-Commit-Author: bhd X-SVN-Commit-Paths: head/de_DE.ISO8859-1/books/handbook/security X-SVN-Commit-Revision: 52833 X-SVN-Commit-Repository: doc MIME-Version: 1.0 Content-Type: text/plain; charset=UTF-8 Content-Transfer-Encoding: 8bit X-Rspamd-Queue-Id: 75166925FF X-Spamd-Bar: -- Authentication-Results: mx1.freebsd.org X-Spamd-Result: default: False [-2.98 / 15.00]; local_wl_from(0.00)[FreeBSD.org]; NEURAL_HAM_MEDIUM(-1.00)[-0.999,0]; NEURAL_HAM_SHORT(-0.98)[-0.984,0]; ASN(0.00)[asn:11403, ipnet:2610:1c1:1::/48, country:US]; NEURAL_HAM_LONG(-1.00)[-0.999,0] X-BeenThere: svn-doc-all@freebsd.org X-Mailman-Version: 2.1.29 Precedence: list List-Id: "SVN commit messages for the entire doc trees \(except for " user" , " projects" , and " translations" \)" List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Wed, 27 Feb 2019 22:05:00 -0000 Author: bhd Date: Wed Feb 27 22:04:58 2019 New Revision: 52833 URL: https://svnweb.freebsd.org/changeset/doc/52833 Log: Update to r52804: Update supported SSL/TLS versions in the base system. Modified: head/de_DE.ISO8859-1/books/handbook/security/chapter.xml Modified: head/de_DE.ISO8859-1/books/handbook/security/chapter.xml ============================================================================== --- head/de_DE.ISO8859-1/books/handbook/security/chapter.xml Wed Feb 27 21:33:14 2019 (r52832) +++ head/de_DE.ISO8859-1/books/handbook/security/chapter.xml Wed Feb 27 22:04:58 2019 (r52833) @@ -5,7 +5,7 @@ $FreeBSD$ $FreeBSDde: de-docproj/books/handbook/security/chapter.xml,v 1.178 2012/04/30 17:07:41 bcr Exp $ - basiert auf: r52152 + basiert auf: r52804 --> mit vielen Netzdiensten benutzt werden. Das in &os; integrierte OpenSSL - stellt die Protokolle Secure Sockets Layer v2/v3 (SSLv2/SSLv3) - und Transport Layer Security v1 (TLSv1) zur Verfügung. + stellt die Protokolle Secure Sockets Layer 3.0 (SSLv3) + und Transport Layer Security 1.0/1.1/1.2 (TLSv1/TLSv1.1/TLSv1.2) zur Verfügung. Die OpenSSL-Bibliotheken stellen - kryptographische Funktionen bereit. + kryptographische Funktionen bereit. &os; 12.0-RELEASE und + neuere Versionen enthalten OpenSSL mit Unterstützung für + Transport Layer Security 1.3 (TLSv1.3). Anwendungsbeispiele für OpenSSL sind die verschlüsselte Authentifizierung von From owner-svn-doc-all@freebsd.org Thu Feb 28 19:05:05 2019 Return-Path: Delivered-To: svn-doc-all@mailman.ysv.freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2610:1c1:1:606c::19:1]) by mailman.ysv.freebsd.org (Postfix) with ESMTP id 3EB5915139BE; Thu, 28 Feb 2019 19:05:05 +0000 (UTC) (envelope-from bhd@FreeBSD.org) Received: from mxrelay.nyi.freebsd.org (mxrelay.nyi.freebsd.org [IPv6:2610:1c1:1:606c::19:3]) (using TLSv1.3 with cipher TLS_AES_256_GCM_SHA384 (256/256 bits) server-signature RSA-PSS (4096 bits) client-signature RSA-PSS (4096 bits) client-digest SHA256) (Client CN "mxrelay.nyi.freebsd.org", Issuer "Let's Encrypt Authority X3" (verified OK)) by mx1.freebsd.org (Postfix) with ESMTPS id D2870824EA; Thu, 28 Feb 2019 19:05:04 +0000 (UTC) (envelope-from bhd@FreeBSD.org) Received: from repo.freebsd.org (repo.freebsd.org [IPv6:2610:1c1:1:6068::e6a:0]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (Client did not present a certificate) by mxrelay.nyi.freebsd.org (Postfix) with ESMTPS id C08799462; Thu, 28 Feb 2019 19:05:04 +0000 (UTC) (envelope-from bhd@FreeBSD.org) Received: from repo.freebsd.org ([127.0.1.37]) by repo.freebsd.org (8.15.2/8.15.2) with ESMTP id x1SJ54v2029673; Thu, 28 Feb 2019 19:05:04 GMT (envelope-from bhd@FreeBSD.org) Received: (from bhd@localhost) by repo.freebsd.org (8.15.2/8.15.2/Submit) id x1SJ549Z029672; Thu, 28 Feb 2019 19:05:04 GMT (envelope-from bhd@FreeBSD.org) Message-Id: <201902281905.x1SJ549Z029672@repo.freebsd.org> X-Authentication-Warning: repo.freebsd.org: bhd set sender to bhd@FreeBSD.org using -f From: Bjoern Heidotting Date: Thu, 28 Feb 2019 19:05:04 +0000 (UTC) To: doc-committers@freebsd.org, svn-doc-all@freebsd.org, svn-doc-head@freebsd.org Subject: svn commit: r52834 - head/de_DE.ISO8859-1/books/handbook/security X-SVN-Group: doc-head X-SVN-Commit-Author: bhd X-SVN-Commit-Paths: head/de_DE.ISO8859-1/books/handbook/security X-SVN-Commit-Revision: 52834 X-SVN-Commit-Repository: doc MIME-Version: 1.0 Content-Type: text/plain; charset=UTF-8 Content-Transfer-Encoding: 8bit X-Rspamd-Queue-Id: D2870824EA X-Spamd-Bar: -- Authentication-Results: mx1.freebsd.org X-Spamd-Result: default: False [-2.96 / 15.00]; local_wl_from(0.00)[FreeBSD.org]; NEURAL_HAM_MEDIUM(-1.00)[-0.999,0]; NEURAL_HAM_SHORT(-0.96)[-0.958,0]; NEURAL_HAM_LONG(-1.00)[-1.000,0] X-BeenThere: svn-doc-all@freebsd.org X-Mailman-Version: 2.1.29 Precedence: list List-Id: "SVN commit messages for the entire doc trees \(except for " user" , " projects" , and " translations" \)" List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Thu, 28 Feb 2019 19:05:05 -0000 Author: bhd Date: Thu Feb 28 19:05:04 2019 New Revision: 52834 URL: https://svnweb.freebsd.org/changeset/doc/52834 Log: Update to r52805: Update OpenSSL chapter after WITH_OPENSSL_PORT has gone. Modified: head/de_DE.ISO8859-1/books/handbook/security/chapter.xml Modified: head/de_DE.ISO8859-1/books/handbook/security/chapter.xml ============================================================================== --- head/de_DE.ISO8859-1/books/handbook/security/chapter.xml Wed Feb 27 22:04:58 2019 (r52833) +++ head/de_DE.ISO8859-1/books/handbook/security/chapter.xml Thu Feb 28 19:05:04 2019 (r52834) @@ -5,7 +5,7 @@ $FreeBSD$ $FreeBSDde: de-docproj/books/handbook/security/chapter.xml,v 1.178 2012/04/30 17:07:41 bcr Exp $ - basiert auf: r52804 + basiert auf: r52805 --> E-Mail-Clients oder Web-Transaktionen wie das Bezahlen mit Kreditkarte. Einige Ports, wie www/apache24 und databases/portgresql91-server, haben eine - Option für den Bau mit - OpenSSL. + Option für den Bau mit OpenSSL. + Bei Auswahl dieser Option, wird + OpenSSL aus dem Basissystem benutzt. + Wenn Sie für den Bau der Anwendung stattdessen + OpenSSL aus dem Port + security/openssl benutzten wollen, fügen Sie + folgende Zeile in + /etc/make.conf ein: - &os; verfügt über zwei OpenSSL Versionen: - eine im Basissystem, die andere aus der Ports-Sammlung. Der - Benutzer kann mit Hilfe der folgenden Optionen wählen, welche - Version in der Voreinstellung für andere Ports verwendet - wird: - - - - WITH_OPENSSL_PORT: wenn diese Option gesetzt ist, wird - der Port OpenSSL aus dem Port - security/openssl verwenden, auch dann, - wenn die Version im Basisystem aktueller ist. - - - - WITH_OPENSSL_BASE: wenn diese Option gesetzt ist, wird - der Port mit OpenSSL aus dem - Basissystem übersetzt. - - + DEFAULT_VERSIONS+= ssl=openssl OpenSSL wird auch eingesetzt, um Zertifikate für Anwendungen bereitzustellen. Die From owner-svn-doc-all@freebsd.org Thu Feb 28 19:15:27 2019 Return-Path: Delivered-To: svn-doc-all@mailman.ysv.freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2610:1c1:1:606c::19:1]) by mailman.ysv.freebsd.org (Postfix) with ESMTP id CC7AE1514102; Thu, 28 Feb 2019 19:15:27 +0000 (UTC) (envelope-from bhd@FreeBSD.org) Received: from mxrelay.nyi.freebsd.org (mxrelay.nyi.freebsd.org [IPv6:2610:1c1:1:606c::19:3]) (using TLSv1.3 with cipher TLS_AES_256_GCM_SHA384 (256/256 bits) server-signature RSA-PSS (4096 bits) client-signature RSA-PSS (4096 bits) client-digest SHA256) (Client CN "mxrelay.nyi.freebsd.org", Issuer "Let's Encrypt Authority X3" (verified OK)) by mx1.freebsd.org (Postfix) with ESMTPS id 744B882F65; Thu, 28 Feb 2019 19:15:27 +0000 (UTC) (envelope-from bhd@FreeBSD.org) Received: from repo.freebsd.org (repo.freebsd.org [IPv6:2610:1c1:1:6068::e6a:0]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (Client did not present a certificate) by mxrelay.nyi.freebsd.org (Postfix) with ESMTPS id 30EAE9616; Thu, 28 Feb 2019 19:15:27 +0000 (UTC) (envelope-from bhd@FreeBSD.org) Received: from repo.freebsd.org ([127.0.1.37]) by repo.freebsd.org (8.15.2/8.15.2) with ESMTP id x1SJFRAd035342; Thu, 28 Feb 2019 19:15:27 GMT (envelope-from bhd@FreeBSD.org) Received: (from bhd@localhost) by repo.freebsd.org (8.15.2/8.15.2/Submit) id x1SJFRox035341; Thu, 28 Feb 2019 19:15:27 GMT (envelope-from bhd@FreeBSD.org) Message-Id: <201902281915.x1SJFRox035341@repo.freebsd.org> X-Authentication-Warning: repo.freebsd.org: bhd set sender to bhd@FreeBSD.org using -f From: Bjoern Heidotting Date: Thu, 28 Feb 2019 19:15:27 +0000 (UTC) To: doc-committers@freebsd.org, svn-doc-all@freebsd.org, svn-doc-head@freebsd.org Subject: svn commit: r52835 - head/en_US.ISO8859-1/books/handbook/security X-SVN-Group: doc-head X-SVN-Commit-Author: bhd X-SVN-Commit-Paths: head/en_US.ISO8859-1/books/handbook/security X-SVN-Commit-Revision: 52835 X-SVN-Commit-Repository: doc MIME-Version: 1.0 Content-Type: text/plain; charset=UTF-8 Content-Transfer-Encoding: 8bit X-Rspamd-Queue-Id: 744B882F65 X-Spamd-Bar: -- Authentication-Results: mx1.freebsd.org X-Spamd-Result: default: False [-2.98 / 15.00]; local_wl_from(0.00)[FreeBSD.org]; NEURAL_HAM_MEDIUM(-1.00)[-0.999,0]; NEURAL_HAM_SHORT(-0.98)[-0.984,0]; NEURAL_HAM_LONG(-1.00)[-1.000,0] X-BeenThere: svn-doc-all@freebsd.org X-Mailman-Version: 2.1.29 Precedence: list List-Id: "SVN commit messages for the entire doc trees \(except for " user" , " projects" , and " translations" \)" List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Thu, 28 Feb 2019 19:15:28 -0000 Author: bhd Date: Thu Feb 28 19:15:26 2019 New Revision: 52835 URL: https://svnweb.freebsd.org/changeset/doc/52835 Log: postgresql191-server is not in the ports any more. Refer to a more recent version. Modified: head/en_US.ISO8859-1/books/handbook/security/chapter.xml Modified: head/en_US.ISO8859-1/books/handbook/security/chapter.xml ============================================================================== --- head/en_US.ISO8859-1/books/handbook/security/chapter.xml Thu Feb 28 19:05:04 2019 (r52834) +++ head/en_US.ISO8859-1/books/handbook/security/chapter.xml Thu Feb 28 19:15:26 2019 (r52835) @@ -1798,7 +1798,7 @@ kadmind5_server_enable="YES" authentication of mail clients and to secure web based transactions such as credit card payments. Some ports, such as www/apache24 and - databases/postgresql91-server, include a + databases/postgresql11-server, include a compile option for building with OpenSSL. If selected, the port will add support using OpenSSL from the From owner-svn-doc-all@freebsd.org Sat Mar 2 11:36:33 2019 Return-Path: Delivered-To: svn-doc-all@mailman.ysv.freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2610:1c1:1:606c::19:1]) by mailman.ysv.freebsd.org (Postfix) with ESMTP id 24A54151E706; Sat, 2 Mar 2019 11:36:33 +0000 (UTC) (envelope-from bhd@FreeBSD.org) Received: from mxrelay.nyi.freebsd.org (mxrelay.nyi.freebsd.org [IPv6:2610:1c1:1:606c::19:3]) (using TLSv1.3 with cipher TLS_AES_256_GCM_SHA384 (256/256 bits) server-signature RSA-PSS (4096 bits) client-signature RSA-PSS (4096 bits) client-digest SHA256) (Client CN "mxrelay.nyi.freebsd.org", Issuer "Let's Encrypt Authority X3" (verified OK)) by mx1.freebsd.org (Postfix) with ESMTPS id B837A89F46; Sat, 2 Mar 2019 11:36:32 +0000 (UTC) (envelope-from bhd@FreeBSD.org) Received: from repo.freebsd.org (repo.freebsd.org [IPv6:2610:1c1:1:6068::e6a:0]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (Client did not present a certificate) by mxrelay.nyi.freebsd.org (Postfix) with ESMTPS id AAA1A43C4; Sat, 2 Mar 2019 11:36:32 +0000 (UTC) (envelope-from bhd@FreeBSD.org) Received: from repo.freebsd.org ([127.0.1.37]) by repo.freebsd.org (8.15.2/8.15.2) with ESMTP id x22BaWZG019674; Sat, 2 Mar 2019 11:36:32 GMT (envelope-from bhd@FreeBSD.org) Received: (from bhd@localhost) by repo.freebsd.org (8.15.2/8.15.2/Submit) id x22BaWei019673; Sat, 2 Mar 2019 11:36:32 GMT (envelope-from bhd@FreeBSD.org) Message-Id: <201903021136.x22BaWei019673@repo.freebsd.org> X-Authentication-Warning: repo.freebsd.org: bhd set sender to bhd@FreeBSD.org using -f From: Bjoern Heidotting Date: Sat, 2 Mar 2019 11:36:32 +0000 (UTC) To: doc-committers@freebsd.org, svn-doc-all@freebsd.org, svn-doc-head@freebsd.org Subject: svn commit: r52837 - head/de_DE.ISO8859-1/books/handbook/security X-SVN-Group: doc-head X-SVN-Commit-Author: bhd X-SVN-Commit-Paths: head/de_DE.ISO8859-1/books/handbook/security X-SVN-Commit-Revision: 52837 X-SVN-Commit-Repository: doc MIME-Version: 1.0 Content-Type: text/plain; charset=UTF-8 Content-Transfer-Encoding: 8bit X-Rspamd-Queue-Id: B837A89F46 X-Spamd-Bar: -- Authentication-Results: mx1.freebsd.org X-Spamd-Result: default: False [-2.94 / 15.00]; local_wl_from(0.00)[FreeBSD.org]; NEURAL_HAM_MEDIUM(-1.00)[-0.999,0]; NEURAL_HAM_SHORT(-0.95)[-0.945,0]; NEURAL_HAM_LONG(-1.00)[-0.999,0]; ASN(0.00)[asn:11403, ipnet:2610:1c1:1::/48, country:US] X-BeenThere: svn-doc-all@freebsd.org X-Mailman-Version: 2.1.29 Precedence: list List-Id: "SVN commit messages for the entire doc trees \(except for " user" , " projects" , and " translations" \)" List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Sat, 02 Mar 2019 11:36:33 -0000 Author: bhd Date: Sat Mar 2 11:36:32 2019 New Revision: 52837 URL: https://svnweb.freebsd.org/changeset/doc/52837 Log: Update to r52835: postgresql191-server is not in the ports any more. Refer to a more recent version. Modified: head/de_DE.ISO8859-1/books/handbook/security/chapter.xml Modified: head/de_DE.ISO8859-1/books/handbook/security/chapter.xml ============================================================================== --- head/de_DE.ISO8859-1/books/handbook/security/chapter.xml Sat Mar 2 11:20:23 2019 (r52836) +++ head/de_DE.ISO8859-1/books/handbook/security/chapter.xml Sat Mar 2 11:36:32 2019 (r52837) @@ -5,7 +5,7 @@ $FreeBSD$ $FreeBSDde: de-docproj/books/handbook/security/chapter.xml,v 1.178 2012/04/30 17:07:41 bcr Exp $ - basiert auf: r52832 + basiert auf: r52835 --> sind die verschlüsselte Authentifizierung von E-Mail-Clients oder Web-Transaktionen wie das Bezahlen mit Kreditkarte. Einige Ports, wie www/apache24 - und databases/portgresql91-server, haben eine + und databases/postgresql11-server, haben eine Option für den Bau mit OpenSSL. Bei Auswahl dieser Option, wird OpenSSL aus dem Basissystem benutzt. From owner-svn-doc-all@freebsd.org Sat Mar 2 11:20:24 2019 Return-Path: Delivered-To: svn-doc-all@mailman.ysv.freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2610:1c1:1:606c::19:1]) by mailman.ysv.freebsd.org (Postfix) with ESMTP id 13093151DF0C; Sat, 2 Mar 2019 11:20:24 +0000 (UTC) (envelope-from bhd@FreeBSD.org) Received: from mxrelay.nyi.freebsd.org (mxrelay.nyi.freebsd.org [IPv6:2610:1c1:1:606c::19:3]) (using TLSv1.3 with cipher TLS_AES_256_GCM_SHA384 (256/256 bits) server-signature RSA-PSS (4096 bits) client-signature RSA-PSS (4096 bits) client-digest SHA256) (Client CN "mxrelay.nyi.freebsd.org", Issuer "Let's Encrypt Authority X3" (verified OK)) by mx1.freebsd.org (Postfix) with ESMTPS id A795E89593; Sat, 2 Mar 2019 11:20:23 +0000 (UTC) (envelope-from bhd@FreeBSD.org) Received: from repo.freebsd.org (repo.freebsd.org [IPv6:2610:1c1:1:6068::e6a:0]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (Client did not present a certificate) by mxrelay.nyi.freebsd.org (Postfix) with ESMTPS id 9804F4058; Sat, 2 Mar 2019 11:20:23 +0000 (UTC) (envelope-from bhd@FreeBSD.org) Received: from repo.freebsd.org ([127.0.1.37]) by repo.freebsd.org (8.15.2/8.15.2) with ESMTP id x22BKN62009003; Sat, 2 Mar 2019 11:20:23 GMT (envelope-from bhd@FreeBSD.org) Received: (from bhd@localhost) by repo.freebsd.org (8.15.2/8.15.2/Submit) id x22BKNSK009002; Sat, 2 Mar 2019 11:20:23 GMT (envelope-from bhd@FreeBSD.org) Message-Id: <201903021120.x22BKNSK009002@repo.freebsd.org> X-Authentication-Warning: repo.freebsd.org: bhd set sender to bhd@FreeBSD.org using -f From: Bjoern Heidotting Date: Sat, 2 Mar 2019 11:20:23 +0000 (UTC) To: doc-committers@freebsd.org, svn-doc-all@freebsd.org, svn-doc-head@freebsd.org Subject: svn commit: r52836 - head/de_DE.ISO8859-1/books/handbook/security X-SVN-Group: doc-head X-SVN-Commit-Author: bhd X-SVN-Commit-Paths: head/de_DE.ISO8859-1/books/handbook/security X-SVN-Commit-Revision: 52836 X-SVN-Commit-Repository: doc MIME-Version: 1.0 Content-Type: text/plain; charset=UTF-8 Content-Transfer-Encoding: 8bit X-Rspamd-Queue-Id: A795E89593 X-Spamd-Bar: -- Authentication-Results: mx1.freebsd.org X-Spamd-Result: default: False [-2.94 / 15.00]; local_wl_from(0.00)[FreeBSD.org]; NEURAL_HAM_MEDIUM(-1.00)[-0.999,0]; NEURAL_HAM_LONG(-1.00)[-0.999,0]; NEURAL_HAM_SHORT(-0.95)[-0.945,0]; ASN(0.00)[asn:11403, ipnet:2610:1c1:1::/48, country:US] X-BeenThere: svn-doc-all@freebsd.org X-Mailman-Version: 2.1.29 Precedence: list List-Id: "SVN commit messages for the entire doc trees \(except for " user" , " projects" , and " translations" \)" List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Sat, 02 Mar 2019 11:20:24 -0000 Author: bhd Date: Sat Mar 2 11:20:23 2019 New Revision: 52836 URL: https://svnweb.freebsd.org/changeset/doc/52836 Log: Update to r52832: Fix broken URLs in Kerberos section. Modified: head/de_DE.ISO8859-1/books/handbook/security/chapter.xml Modified: head/de_DE.ISO8859-1/books/handbook/security/chapter.xml ============================================================================== --- head/de_DE.ISO8859-1/books/handbook/security/chapter.xml Thu Feb 28 19:15:26 2019 (r52835) +++ head/de_DE.ISO8859-1/books/handbook/security/chapter.xml Sat Mar 2 11:20:23 2019 (r52836) @@ -5,7 +5,7 @@ $FreeBSD$ $FreeBSDde: de-docproj/books/handbook/security/chapter.xml,v 1.178 2012/04/30 17:07:41 bcr Exp $ - basiert auf: r52805 + basiert auf: r52832 --> + xlink:href="https://www.ietf.org/rfc/rfc4120.txt"> RFC 4120, The Kerberos Network Authentication Service (V5) @@ -1909,7 +1909,7 @@ kadmind5_server_enable="YES" Heimdal + xlink:href="https://www.h5l.org/">Heimdal Kerberos-Seite From owner-svn-doc-all@freebsd.org Sat Mar 2 19:17:02 2019 Return-Path: Delivered-To: svn-doc-all@mailman.ysv.freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2610:1c1:1:606c::19:1]) by mailman.ysv.freebsd.org (Postfix) with ESMTP id 1C0F8150B2D7; Sat, 2 Mar 2019 19:17:02 +0000 (UTC) (envelope-from bhd@FreeBSD.org) Received: from mxrelay.nyi.freebsd.org (mxrelay.nyi.freebsd.org [IPv6:2610:1c1:1:606c::19:3]) (using TLSv1.3 with cipher TLS_AES_256_GCM_SHA384 (256/256 bits) server-signature RSA-PSS (4096 bits) client-signature RSA-PSS (4096 bits) client-digest SHA256) (Client CN "mxrelay.nyi.freebsd.org", Issuer "Let's Encrypt Authority X3" (verified OK)) by mx1.freebsd.org (Postfix) with ESMTPS id B71FC76EE9; Sat, 2 Mar 2019 19:17:01 +0000 (UTC) (envelope-from bhd@FreeBSD.org) Received: from repo.freebsd.org (repo.freebsd.org [IPv6:2610:1c1:1:6068::e6a:0]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (Client did not present a certificate) by mxrelay.nyi.freebsd.org (Postfix) with ESMTPS id A543C917A; Sat, 2 Mar 2019 19:17:01 +0000 (UTC) (envelope-from bhd@FreeBSD.org) Received: from repo.freebsd.org ([127.0.1.37]) by repo.freebsd.org (8.15.2/8.15.2) with ESMTP id x22JH1l2065898; Sat, 2 Mar 2019 19:17:01 GMT (envelope-from bhd@FreeBSD.org) Received: (from bhd@localhost) by repo.freebsd.org (8.15.2/8.15.2/Submit) id x22JH1EV065897; Sat, 2 Mar 2019 19:17:01 GMT (envelope-from bhd@FreeBSD.org) Message-Id: <201903021917.x22JH1EV065897@repo.freebsd.org> X-Authentication-Warning: repo.freebsd.org: bhd set sender to bhd@FreeBSD.org using -f From: Bjoern Heidotting Date: Sat, 2 Mar 2019 19:17:01 +0000 (UTC) To: doc-committers@freebsd.org, svn-doc-all@freebsd.org, svn-doc-head@freebsd.org Subject: svn commit: r52838 - head/de_DE.ISO8859-1/books/handbook/firewalls X-SVN-Group: doc-head X-SVN-Commit-Author: bhd X-SVN-Commit-Paths: head/de_DE.ISO8859-1/books/handbook/firewalls X-SVN-Commit-Revision: 52838 X-SVN-Commit-Repository: doc MIME-Version: 1.0 Content-Type: text/plain; charset=UTF-8 Content-Transfer-Encoding: 8bit X-Rspamd-Queue-Id: B71FC76EE9 X-Spamd-Bar: -- Authentication-Results: mx1.freebsd.org X-Spamd-Result: default: False [-2.98 / 15.00]; local_wl_from(0.00)[FreeBSD.org]; NEURAL_HAM_MEDIUM(-1.00)[-0.999,0]; NEURAL_HAM_SHORT(-0.98)[-0.977,0]; ASN(0.00)[asn:11403, ipnet:2610:1c1:1::/48, country:US]; NEURAL_HAM_LONG(-1.00)[-1.000,0] X-BeenThere: svn-doc-all@freebsd.org X-Mailman-Version: 2.1.29 Precedence: list List-Id: "SVN commit messages for the entire doc trees \(except for " user" , " projects" , and " translations" \)" List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Sat, 02 Mar 2019 19:17:02 -0000 Author: bhd Date: Sat Mar 2 19:17:01 2019 New Revision: 52838 URL: https://svnweb.freebsd.org/changeset/doc/52838 Log: Update to r52785: handbook: Improve Firewalls chapter - Fix some dead links and punctuations - pfctl_parser.c was moved to a new location since FreeBSD 10 - Fix a few service commands Modified: head/de_DE.ISO8859-1/books/handbook/firewalls/chapter.xml Modified: head/de_DE.ISO8859-1/books/handbook/firewalls/chapter.xml ============================================================================== --- head/de_DE.ISO8859-1/books/handbook/firewalls/chapter.xml Sat Mar 2 11:36:32 2019 (r52837) +++ head/de_DE.ISO8859-1/books/handbook/firewalls/chapter.xml Sat Mar 2 19:17:01 2019 (r52838) @@ -5,7 +5,7 @@ $FreeBSD$ $FreeBSDde: de-docproj/books/handbook/firewalls/chapter.xml,v 1.53 2012/04/30 16:15:52 bcr Exp $ - basiert auf: r49919 + basiert auf: r52785 --> http://en.wikipedia.org/wiki/List_of_TCP_and_UDP_port_numbers. - Die Seite - http://www.sans.org/security-resources/idfaq/oddports.php - enthält eine Liste der Portnummern, die auch von Trojanern - benutzt werden. + Unter diesem Link finden Sie + Portnummern, die auch von Trojanern benutzt werden. FTP hat zwei Modi: Aktiv und Passiv. Unterschied liegt in der Bestimmung des Datenkanals. Der @@ -677,9 +675,9 @@ options ALTQ_PRIQ # Priority Queuing (PR Weitere Informationen über diese Algorithmen und Beispiele - für Regelsätze finden Sie unter - http://www.openbsd.org/faq/pf/queueing.html. + für Regelsätze finden Sie in den + OpenBSD Archiven. @@ -1115,7 +1113,7 @@ pass inet proto icmp from any to $ext_if keep state

ICMP-Nachrichten benötigt werden, kann die Liste icmp_types einfach erweitert werden. Geben Sie more - /usr/src/contrib/pf/pfctl/pfctl_parser.c ein, um + /usr/src/sbin/pfctl/pfctl_parser.c ein, um eine Liste der von PF unterstützten ICMP-Nachrichten zu sehen. Die Webseite RFC + xlink:href="https://www.ietf.org/rfc/rfc1918.txt">RFC 1918 konforme Adresse zugewiesen bekommen. Zudem muss das Standard-Gateway der Rechner auf die interne IP-Adresse des &man.natd.8;-Systems From owner-svn-doc-all@freebsd.org Sat Mar 2 21:50:55 2019 Return-Path: Delivered-To: svn-doc-all@mailman.ysv.freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2610:1c1:1:606c::19:1]) by mailman.ysv.freebsd.org (Postfix) with ESMTP id 9E57C1511BC5; Sat, 2 Mar 2019 21:50:55 +0000 (UTC) (envelope-from bhd@FreeBSD.org) Received: from mxrelay.nyi.freebsd.org (mxrelay.nyi.freebsd.org [IPv6:2610:1c1:1:606c::19:3]) (using TLSv1.3 with cipher TLS_AES_256_GCM_SHA384 (256/256 bits) server-signature RSA-PSS (4096 bits) client-signature RSA-PSS (4096 bits) client-digest SHA256) (Client CN "mxrelay.nyi.freebsd.org", Issuer "Let's Encrypt Authority X3" (verified OK)) by mx1.freebsd.org (Postfix) with ESMTPS id 45EB7861F3; Sat, 2 Mar 2019 21:50:55 +0000 (UTC) (envelope-from bhd@FreeBSD.org) Received: from repo.freebsd.org (repo.freebsd.org [IPv6:2610:1c1:1:6068::e6a:0]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (Client did not present a certificate) by mxrelay.nyi.freebsd.org (Postfix) with ESMTPS id 38696AB24; Sat, 2 Mar 2019 21:50:55 +0000 (UTC) (envelope-from bhd@FreeBSD.org) Received: from repo.freebsd.org ([127.0.1.37]) by repo.freebsd.org (8.15.2/8.15.2) with ESMTP id x22Lotxa047373; Sat, 2 Mar 2019 21:50:55 GMT (envelope-from bhd@FreeBSD.org) Received: (from bhd@localhost) by repo.freebsd.org (8.15.2/8.15.2/Submit) id x22LotGV047372; Sat, 2 Mar 2019 21:50:55 GMT (envelope-from bhd@FreeBSD.org) Message-Id: <201903022150.x22LotGV047372@repo.freebsd.org> X-Authentication-Warning: repo.freebsd.org: bhd set sender to bhd@FreeBSD.org using -f From: Bjoern Heidotting Date: Sat, 2 Mar 2019 21:50:55 +0000 (UTC) To: doc-committers@freebsd.org, svn-doc-all@freebsd.org, svn-doc-head@freebsd.org Subject: svn commit: r52839 - head/de_DE.ISO8859-1/books/handbook/x11 X-SVN-Group: doc-head X-SVN-Commit-Author: bhd X-SVN-Commit-Paths: head/de_DE.ISO8859-1/books/handbook/x11 X-SVN-Commit-Revision: 52839 X-SVN-Commit-Repository: doc MIME-Version: 1.0 Content-Type: text/plain; charset=UTF-8 Content-Transfer-Encoding: 8bit X-Rspamd-Queue-Id: 45EB7861F3 X-Spamd-Bar: -- Authentication-Results: mx1.freebsd.org X-Spamd-Result: default: False [-2.97 / 15.00]; local_wl_from(0.00)[FreeBSD.org]; NEURAL_HAM_MEDIUM(-1.00)[-0.999,0]; NEURAL_HAM_SHORT(-0.97)[-0.969,0]; ASN(0.00)[asn:11403, ipnet:2610:1c1:1::/48, country:US]; NEURAL_HAM_LONG(-1.00)[-0.999,0] X-BeenThere: svn-doc-all@freebsd.org X-Mailman-Version: 2.1.29 Precedence: list List-Id: "SVN commit messages for the entire doc trees \(except for " user" , " projects" , and " translations" \)" List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Sat, 02 Mar 2019 21:50:55 -0000 Author: bhd Date: Sat Mar 2 21:50:54 2019 New Revision: 52839 URL: https://svnweb.freebsd.org/changeset/doc/52839 Log: Update to r52500: Add a note on the new graphics drivers imported from Linux to the X11 chapter of the Handbook. Modified: head/de_DE.ISO8859-1/books/handbook/x11/chapter.xml Modified: head/de_DE.ISO8859-1/books/handbook/x11/chapter.xml ============================================================================== --- head/de_DE.ISO8859-1/books/handbook/x11/chapter.xml Sat Mar 2 19:17:01 2019 (r52838) +++ head/de_DE.ISO8859-1/books/handbook/x11/chapter.xml Sat Mar 2 21:50:54 2019 (r52839) @@ -4,7 +4,7 @@ $FreeBSD$ $FreeBSDde: de-docproj/books/handbook/x11/chapter.xml,v 1.79 2012/04/30 16:18:12 bcr Exp $ - basiert auf: r52111 + basiert auf: r52500 --> Grafikkarten + Aufgrund von Änderungen in neueren Versionen von &os; + ist es nun möglich, Grafiktreiber zu benutzen, die aus der + Ports-Sammlung oder als Pakete bereitgestellt werden. Die + folgenden Treiber sind mit + graphics/drm-kmod verfügbar: + + + &i915kms; + &radeonkms; + &amdgpu; + + + 2D- und 3D-Beschleunigung wird auf den meisten + &i915kms; Grafikkarten von &intel; unterstützt. + + Name des Treibers: i915kms + + 2D- und 3D-Beschleunigung wird auf den meisten + älteren &amdgpu; Grafikkarten von &amd; + unterstützt. + + Name des Treibers: amdgpu + + Eine Liste der unterstützten GPUs finden Sie unter + + und . + + + &intel;