IPFilter & IPv6

Samuel Tardieu sam at rfc1149.net
Tue Jul 1 06:31:08 PDT 2003


>>>>> "Sam" == Samuel Tardieu <sam at rfc1149.net> writes:

Sam> With a up-to-date -STABLE kernel and userland, I cannot use IPv6
Sam> rules with IPFilter.

Sam> # ipf -6 -f /tmp/t
Sam> 1:ioctl(add/insert rule): No such process

Sam> Any idea of what could be wrong?

Thanks to Artur Pydo (who happened to ask if I had IPFILTER in my
kernel configuration file), I found the bug: loading the "ipl" module
is not enough to use IPFilter with IPv6. It looks like IPFilter needs
to be compiled in-kernel, while dynamic loading of the module works
for IPv4. send-pr.

  Sam
-- 
Samuel Tardieu -- sam at rfc1149.net -- http://www.rfc1149.net/sam



More information about the freebsd-stable mailing list