[Bug 238796] ipfilter: failure to detect the same rules when arguments ordered differently
bugzilla-noreply at freebsd.org
bugzilla-noreply at freebsd.org
Fri Jul 19 03:16:17 UTC 2019
https://bugs.freebsd.org/bugzilla/show_bug.cgi?id=238796
--- Comment #26 from WHR <msl0000023508 at gmail.com> ---
(In reply to Cy Schubert from comment #23)
This patch seems break adding rules:
[root at ipfilter-test /usr/obj]# kldload
usr/src/amd64.amd64/sys/modules/ipfilter/ipl.ko
[root at ipfilter-test /usr/obj]# kldstat
Id Refs Address Size Name
1 7 0xffffffff80200000 24ffe50 kernel
2 1 0xffffffff82819000 2538 intpm.ko
3 1 0xffffffff8281c000 a50 smbus.ko
4 1 0xffffffff8281d000 3b468 ipl.ko
[root at ipfilter-test /usr/obj]# echo "pass in quick reply-to tun0:10.1.1.1 on
tun0 proto tcp from any to 10.1.1.11 port = 22 flags S/FSRPAU keep state" | ipf
-f -
8:1:ioctl(add/insert rule): no data provided with filter rule
[root at ipfilter-test /usr/obj]# echo "pass in quick reply-to tun1:10.1.2.1 on
tun1 proto tcp from any to 10.1.2.11 port = 22 flags S/FSRPAU keep state" | ipf
-f -
8:1:ioctl(add/insert rule): no data provided with filter rule
[root at ipfilter-test /usr/obj]# echo "pass in quick reply-to tun0:10.1.1.1 on
tun0 proto tcp from any to 10.1.1.11 port = 22 flags S/FSRPAU keep state" | ipf
-f -
8:1:ioctl(add/insert rule): no data provided with filter rule
[root at ipfilter-test /usr/obj]# ipfstat -Rion
# empty list for ipfilter(out)
# empty list for ipfilter(in)
Kernel version is 13.0-CURRENT r350103.
--
You are receiving this mail because:
You are on the CC list for the bug.
More information about the freebsd-net
mailing list