8675 Commits (c1869dec59c83af486cad7e688928d02f873b62a)

Author SHA1 Message Date
  gilles 971eb35f12 make implicit "listen on socket" explicit, the default config no longer has 5 years ago
  gilles 7e2b6d33bd use explicit from notation in default config 5 years ago
  claudio 65060c8aff sndiod(8) reopens audio interfaces on SIGHUP, which makes a lot of sense 5 years ago
  tedu 97919939ff zero tmpout too. reminded by related diff from tim 5 years ago
  tedu 030f5c6e7b overwrite the key in failure modes in case the caller doesn't check. 5 years ago
  benno c8b542ec28 fix the spelling of rpki, as noted by jmc@ 5 years ago
  deraadt de85982ca0 grow an install media 5 years ago
  deraadt feb6c25c28 uid/gid 70 is _rpki-client for privdrop; ok benno 5 years ago
  djm d8afe995b1 RDIRS for libcbor and libfido2 5 years ago
  jmc ed16e2b6fa tweak previous; ok deraadt 5 years ago
  otto d090b243af sensors can als be marked trusted; ok deraadt@ 5 years ago
  schwarze 458c49a176 tweak previous: delete stray .Pp 5 years ago
  deraadt 35e291d086 change the nmea sensor to "trusted" 5 years ago
  deraadt 17a1cbd42d trusted sub-option works on sensors also now; ok otto 5 years ago
  otto 00f92e8d8c Also implement "trusted" for sensors; do not do constraint validation 5 years ago
  deraadt c5e229f62e move /usr and var remounting (nfs diskless case...) earlier, so that 5 years ago
  deraadt e3b7366f35 remove -s and -S documentation, and explain the boot-time startup mode 5 years ago
  deraadt 796283a2f8 Disable -s and -S functionality. -s would force time using NTP packets without 5 years ago
  deraadt c70a480976 update ntpd example configuration 5 years ago
  deraadt 739d84ff90 document server/servers "trusted" sub-option. Indicates a particular 5 years ago
  otto 21c48e24ae Introduce a "trusted" modifier, for peers that should be on a local net 5 years ago
  deraadt e66cf3a761 alphatically order sub-options for sensors, and make the explanations 5 years ago
  deraadt 434126328c typo 5 years ago
  naddy 9341a24f6f use $(<file) instead of $(cat file) since this script uses ksh; ok ajacoutot@ 5 years ago
  otto 016dfd7256 - validate sensor values against constraints 5 years ago
  sthen 3ac9b78c4b Reenable "val-log-level: 2", so that when sites have misconfigured 5 years ago
  job 3cf6b014d3 Enable DNSSEC validation in unbound by default 5 years ago
  deraadt daf113ff2d Perform contraint validation against 9.9.9.9 and 2620:fe::fe also (which 5 years ago
  deraadt 66480e8a82 we have emergency entropy injection code in rc, for if the bootblocks and 5 years ago
  otto df4870ab11 Allow the singular constraint clause to list multiple addresses; 5 years ago
  solene d7926a2681 Add a default priority of 5 for user _pbuild, this should help keeping system 5 years ago
  dlg 9fe746fb2f handle aggr(4) in the same way as trunk(4) 5 years ago
  tb f189080779 Adjust whitespace, so Ta macros are aligned vertically as already done in 5 years ago
  tb c7e739d82b The ber_* namespace is used by liblber since time immemorial, 5 years ago
  otto 195fd275f8 Allow the caller of asr functions to create and use a specific context. 5 years ago
  dtucker 1f9a1ea27c Import regenerated moduli file. 5 years ago
  kettenis e48267860e regen 5 years ago
  kettenis 45e6f43007 Add /dev/pri. 5 years ago
  visa 2a4a6ba595 Bump datasize-cur for pbuild on mips64, to make room for modernity. 5 years ago
  deraadt ff0931075f accidentally stated the MP kernel twice, leading the SHA256/SHA256.sig 5 years ago
  sthen f7815ee9e1 sync arm64 pbuild resource limits with amd64; arm64 now builds some large 5 years ago
  deraadt 38098b4a51 update pkg name 5 years ago
  deraadt 7fde5f36e9 correct dates 5 years ago
  sthen 558edf9f75 for now, only mix in sysctl hw.{uuid,serialno,sensors} to /dev/random. 5 years ago
  sthen 4b1cb37955 feed "sysctl hw" into /dev/random; a cheap way to feed in sensor data 5 years ago
  jmc 27c779ffdc zap trailing whitespace; 5 years ago
  deraadt 14f0af3230 Xr random 4 in a better way 5 years ago
  kurt 8b4c98a624 Increase datasize limit for ports building on arm64 in preparation 5 years ago
  solene c85a255eb5 Correct sysctl section is 2 5 years ago
  solene 57ef32f536 Add explanation about the default value of sysctl key 5 years ago