dc6f578a bryanv Aug. 4, 2022, 3:54 a.m.
f44e2577 des Aug. 4, 2022, 12:10 a.m.
Sponsored by:	Klara, Inc.
cgit
412bdb5a mjg Aug. 3, 2022, 9:23 p.m.
Sponsored by:	Rubicon Communications, LLC ("Netgate")
cgit
54d8d0fe des Aug. 3, 2022, 9:01 p.m.
Sponsored by:	Klara, Inc.
cgit
c7a8e8d3 des Aug. 3, 2022, 7:24 p.m.
Sponsored by:	Klara, Inc.
cgit
36d67475 des Aug. 3, 2022, 7:03 p.m.
Sponsored by:	Klara, Inc.
MFC after:	1 week
cgit
f863970a imp Aug. 3, 2022, 5:24 p.m.
geliboot.c and geliboot_crypto.c don't need anything from stand/common,
so remove them from the list of things to add it.

Sponsored by:		Netflix
Differential Revision:	https://reviews.freebsd.org/D35921
cgit
4333168b imp Aug. 3, 2022, 5:24 p.m.
bootstrap.h isn't needed at all by geil, so remove it.

Sponsored by:		Netflix
Reviewed by:		tsoome (earlier version)
Differential Revision:	https://reviews.freebsd.org/D35920
cgit
a23c26b2 imp Aug. 3, 2022, 5:24 p.m.
This code was written prior to snprintf being in the then libstand (now
libsa). Since we have it, use it for extra safety. The code already
tries to be safe, but since we have snprintf as well, the added layer of
protection will suffice. The current code reserves 16 bytes (plus a NUL)
at the end for worst case of inet_ntoa, which is still a little
pessimal, but safe from overflow.

Sponsored by:		Netflix
Reviewed by:		tsoome
Differential Revision:	https://reviews.freebsd.org/D35102
cgit
979bc32c tuexen Aug. 3, 2022, 3:28 p.m.
MFC after:	1 week
cgit
c53fec76 kib Aug. 3, 2022, 1:56 p.m.
The TDA_AST flag is set on td2 unconditionally (as it was TDF_ASTPENDING
before AST rework), so it is not used practically for some time.

Reviewed by:	markj
Sponsored by:	The FreeBSD Foundation
MFC after:	1 week
Differential revision:	https://reviews.freebsd.org/D36033
cgit
f2fd7d8b kib Aug. 3, 2022, 1:56 p.m.
Mask checked was completely wrong

Reviewed by:	markj
Sponsored by:	The FreeBSD Foundation
MFC after:	1 week
Differential revision:	https://reviews.freebsd.org/D36033
cgit
6e4dbb7f dfr Aug. 3, 2022, 10:02 a.m.
Summary:
This allows installing packages that depend on kerberos libraries
without pulling in all the binaries. It also moves libgssapi to runtime
to allow installing kerbereos libraries without adding a dependancy on
the large utilities package. It makes sense to put libgssapi in runtime
rather than kerberos-lib since this is a plugin layer which is intended
to support any GSS-API mechanisms, not just kerberos.

A good example of a package which uses kerberos libraries without
needing the kerberos utilities is sshd. This uses the kerberos GSS-API
libraries to implement its GSSAPIAuthentication option.

MFC after: 2 weeks

Subscribers: imp

Differential Revision: https://reviews.freebsd.org/D36028
cgit
08bb0873 melifaro Aug. 3, 2022, 8:21 a.m.
Reported by:	cy
MFC after:	1 month
cgit
e21dc161 zirias Aug. 3, 2022, 7:39 a.m.
This completes step 7 from Committer's Guide.

Approved by:		tcberner (mentor)
Differential Revision:	https://reviews.freebsd.org/D36014
cgit