Skip site navigation (1)Skip section navigation (2)
Date:      Thu, 16 Sep 2004 03:49:21 -0000
From:      "Max Laier" <max@love2party.net>
To:        <will@csociety.org>
Cc:        pf4freebsd@freelists.org
Subject:   [pf4freebsd] Re: What to do with the FreeBSD port security/pf?
Message-ID:  <003f01c3707e$aa035080$01000001@max900>
References:  <20030901024435.GA47671@procyon.firepipe.net>

next in thread | previous in thread | raw e-mail | index | archive | help
> [Please Cc: me as I am not subscribed.]
>
> Hello,
>
> I understand from several people that the port is using an
> outdated version of the pf port (1.0 vs. 1.63).  Since this
> version is essentially broken, it seems to me that one of two
> things should happen:
>
> 1) Remove the port.
> 2) Update the port.

Wait! You sliped one or two facts here:
1) Version 1.0 is in fact pf as present in OpenBSD 3.3. So it is what we
consider stable.
2) Portrevision 7 brings a fix for an essential problem that has been
present since the very first version and was fixed three days ago in
OpenBSD, the port and the tarball.
3) As the tarball release is changeing very much, we didn't put it into the
portssystem. That would only make sense as a "-devel" port, which needs a
active maintainer et al.

> I also understand that the pf4freebsd effort is trying to get the
> pf code in the base system.  That's great, but what about people
> who'd like to use it now?

The thing is that we provide the tarball release for people who want to use
and *test* OpenBSD-Current features. In addition there will be a patchset
against FreeBSD-Current for testing as we need comments from you to learn
how to bring pf to FreeBSD in case we are allowed.

> Such as myself.  I could follow the directions at:
>
> https://solarflux.org/pf/pf+altq-fbsd51.php
>
> but, hey, why not save everyone else the trouble?  I volunteer to
> upgrade & commit said upgrade for the pf port.

As I stated above 1.63 is much likely to be revised in less then a week
resulting in the need of a port update. If you want to build and *maintain*
a pf-devel port, be my guest. That would be a great help right now.

> Or I'll remove it if you prefer that approach.  Or not?

No! It's perfectly up2date (in fact OpenBSD-Stable does not have the patch
applied, yet so we are ahead).
To sum it up:
Port 1.0_7 = OpenBSD 3.3 (with the latest patches)
Tarball 1.63 = OpenBSD 3.3-Current (what we be released as OpenBSD 3.4 in
November)
When OpenBSD 3.4 is released we bring a new Port (2.0) or hope to get a
chance to get into the base system.

> Thanks for your effort, in any case.  :)

Thank you.

Regards,
    Max





Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?003f01c3707e$aa035080$01000001>