Better IP spoofing support (udpraw and icmp)
authorMichael Rash <mbr@cipherdyne.org>
Thu, 4 Oct 2012 02:56:10 +0000 (22:56 -0400)
committerMichael Rash <mbr@cipherdyne.org>
Thu, 4 Oct 2012 02:56:10 +0000 (22:56 -0400)
commit229a36625b24c01d5883d65586dff7670c467064
tree0aa848802d849f7d58f3f95e5a8ed931f9a4152d
parentbb1743d25dc8145252b0e8a90d81766a957dc45a
Better IP spoofing support (udpraw and icmp)

- [client] Added '-P udpraw' to allow the client to send SPA packets over
  UDP with a spoofed source IP address.  This is in addition to the
  original 'tcpraw' and 'icmp' protocols that also support a spoofed
  source IP.
- [server] Bug fix to accept SPA packets over ICMP if the fwknop client
  is executed with '-P icmp' and the user has the required privileges.
ChangeLog
Makefile.am
client/config_init.c
client/spa_comm.c
common/common.h
doc/fwknop.man.asciidoc
server/process_packet.c
test/conf/icmp_pcap_filter_fwknopd.conf [new file with mode: 0644]
test/conf/tcp_pcap_filter_fwknopd.conf [new file with mode: 0644]
test/test-fwknop.pl