4.9 Release ipfw2 - OUCH using limit - reboots

Sten Daniel Sørsdal sten.daniel.sorsdal at wan.no
Wed Jan 14 13:43:37 PST 2004


> 
> fuc> Has anyone seen a problem using 4.9 release with IPFW2 
> using limit 
> fuc> causing crashes/reboots and 'OUCH! cannot remove rule, 
> count 65535'
> fuc> in the logfile? Or, does anyone see a problem with my logic.
> 
> fuc> sample use of limit seeming to cause the problem:
> fuc> ipfw -q add 00182 allow log logamount 1000 tcp from any to 
> fuc> 216.XX.XX.6 setup limit src-addr 3 in via xl1
> 
> I can confirm the same on 4.9 with FreeBSD 4.8-RELEASE. My 
> sysctl settings with dyn_buckets was default. Machine reboots 
> on high amount of traffic.
> 

I had to remove all "limit" options after i noticed they get 
created but not destroyed. Had to reboot (or in a few cases i 
could reload module) to fix it. I dont know why this happens
but i believe i read about a similar thing on 5.x so i chalked it up
as another bug that will be fixed soon.

I run FreeBSD 4.9-RELEASE and couple of 4.9-PRERELEASE.
Both have this issue, as far as i remember.

_// Sten Daniel Sørsdal




More information about the freebsd-ipfw mailing list