-.\" $OpenBSD: sysctl.3,v 1.228 2014/01/21 03:15:45 schwarze Exp $
+.\" $OpenBSD: sysctl.3,v 1.229 2014/04/19 12:42:50 logan Exp $
.\"
.\" Copyright (c) 1993
.\" The Regents of the University of California. All rights reserved.
.\" OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED OF THE POSSIBILITY OF
.\" SUCH DAMAGE.
.\"
-.Dd $Mdocdate: January 21 2014 $
+.Dd $Mdocdate: April 19 2014 $
.Dt SYSCTL 3
.Os
.Sh NAME
.It ip6 Ta hdrnestlimit Ta integer Ta yes
.It ip6 Ta hlim Ta integer Ta yes
.It ip6 Ta log_interval Ta integer Ta yes
+.It ip6 Ta maxdynroutes Ta integer Ta yes
.It ip6 Ta maxfragpackets Ta integer Ta yes
.It ip6 Ta maxfrags Ta integer Ta yes
+.It ip6 Ta maxifprefixes Ta integer Ta yes
+.It ip6 Ta maxifdefrouters Ta integer Ta yes
.It ip6 Ta mforwarding Ta integer Ta yes
.It ip6 Ta multicast_mtudisc Ta integer Ta yes
.It ip6 Ta multipath Ta integer Ta yes
+.It ip6 Ta neighborgcthresh Ta integer Ta yes
.It ip6 Ta redirect Ta integer Ta yes
.It ip6 Ta rr_prune Ta integer Ta yes
.It ip6 Ta use_deprecated Ta integer Ta yes
The value indicates the number of
seconds of interval which must elapse between log output.
.Pp
+.It Li ip6.maxdynroutes
+Maximum number of routes created by redirect.
+Set to negative to disable.
+The default value is 4096.
+.Pp
.It Li ip6.maxfragpackets
The maximum number of fragmented packets the node will accept.
0 means that the node will not accept any fragmented packets.
\-1 means that the node will accept as many fragments as it receives.
The flag is provided basically for avoiding possible DoS attacks.
.Pp
+.It Li ip6.maxifprefixes
+Maximum number of prefixes created by route advertisements per interface.
+Set to negative to disable.
+The default value is 16.
+.Pp
+.It Li ip6.maxifdefrouters 16
+Maximum number of default routers created by route advertisements per
+interface.
+Set to negative to disable.
+The default value is 16.
+.Pp
.It Li ip6.mforwarding
If set to 1, then multicast forwarding is enabled for the host.
The default is 0.
If set to 0, only the first route selected will be used for a given
destination regardless of how many routes exist in the routing table.
.Pp
+.It Li ip6.neighborgcthresh
+Maximum number of entries in neighbor cache.
+Set to negative to disable.
+The default value is 2048.
+.Pp
.It Li ip6.redirect
Returns 1 when ICMPv6 redirects may be sent by the node.
This option is ignored unless the node is routing IP packets,
-.\" $OpenBSD: sysctl.8,v 1.173 2013/10/28 21:02:35 deraadt Exp $
+.\" $OpenBSD: sysctl.8,v 1.174 2014/04/19 12:42:50 logan Exp $
.\" $NetBSD: sysctl.8,v 1.4 1995/09/30 07:12:49 thorpej Exp $
.\"
.\" Copyright (c) 1993
.\"
.\" @(#)sysctl.8 8.2 (Berkeley) 5/9/95
.\"
-.Dd $Mdocdate: October 28 2013 $
+.Dd $Mdocdate: April 19 2014 $
.Dt SYSCTL 8
.Os
.Sh NAME
.It net.inet6.ip6.use_deprecated Ta integer Ta yes
.It net.inet6.ip6.rr_prune Ta integer Ta yes
.It net.inet6.ip6.v6only Ta integer Ta no
+.It net.inet6.ip6.maxdynroutes Ta integer Ta yes
.It net.inet6.ip6.maxfrags Ta integer Ta yes
+.It net.inet6.ip6.maxifprefixes Ta integer Ta yes
+.It net.inet6.ip6.maxifdefrouters Ta integer Ta yes
.It net.inet6.ip6.mforwarding Ta integer Ta yes
.It net.inet6.ip6.multipath Ta integer Ta yes
.It net.inet6.ip6.multicast_mtudisc Ta integer Ta yes
+.It net.inet6.ip6.neighborgcthresh Ta integer Ta yes
.It net.inet6.icmp6.rediraccept Ta integer Ta yes
.It net.inet6.icmp6.redirtimeout Ta integer Ta yes
.It net.inet6.icmp6.nd6_prune Ta integer Ta yes