firewall4: are the options tcp_syncookies, tcp_ecn, tcp_window_scaling, accept_redirects and accept_source_route used at all by the fw4

Florian Eckert fe at dev.tdt.de
Thu Mar 20 02:45:45 PDT 2025


Hello Paul,

>> I have just gone through the options of the fw4 and wanted to
>> integrate the missing and useful ones into the LuCI [1]. I have
>> noticed, that the following boolean options are in the fw4 default
>> parser configuration section but they are not used anywhere else
>> in the fw4 source!
> 
> Was this ever answered?

No I haven´t.
Meanwhile I have also gone through a checked out and build
openwrt buildtree with all feeds and searched for the option
with grep.

I only found the following information:
* tcp_syncookies -> found in sysctl of the kernel and fw4
* tcp_ecn -> found in sysctl of the kernel and fw4
* accept_redirects -> found in sysctl of the kernel and fw4
* accept_source_route -> found in sysctl of the kernel and fw4

Maybe the options were used in old openwrts to configure the
kernel's sysctl?

--
Florian



More information about the openwrt-devel mailing list