ipfw: ouch!, skip past end of rules, denying packet

Ja Cichas cichas at post.cz
Mon Nov 20 11:31:04 UTC 2006


Hello,
after upgrade from FreeBSD 4.11 to 6.1-RELEASE-p10  we are getting lots of $SUBJ messages in log. 
It is triggered by "ipfw -f flush" command when firewall is reloaded.

Other info:
HZ=1000
dummynet pipes (without them no $SUBJ)
net.inet.ip.fw.one_pass: 0    (need for traffic counting after pipe)
no skipto rule


Any solution, please?


More information about the freebsd-ipfw mailing list