Eliminating IPv6 (?)
    Patrick M. Hausen 
    hausen at punkt.de
       
    Tue Jun 18 12:35:05 UTC 2019
    
    
  
Hi all,
> Am 18.06.2019 um 13:54 schrieb Robert Huff <roberthuff at rcn.com>:
> 
> 	If this is true - haven't checked personally - then it's a bug.
> (And a non-trivial one, the fact you're the first to report it
> notwithstanding.)
> 	Can you please open a bug report?
I doubt it would qualify as a bug - possibly a bug in the docs, yes.
Because the observed behaviour is definitely intentional. The flow of statements in rc.firewall is:
0.	flush all rules
1.	setup_loopback
2.	setup_ipv6_mandatory
and no configuration is going to skip that - hence the only way is to use
firewall_script. Then it goes on:
3.	is firewall_type one of the predefined „open“, „simple“, etc.? —> configure accordingly
4.	if not and firewall_type points to a readable file, suck in rules from there
So, yes, there will always be mandatory IPv6 rules in place. That’s why
they are called mandatory, I figure ;-)
Kind regards,
Patrick
-- 
punkt.de GmbH			Internet - Dienstleistungen - Beratung
Kaiserallee 13a			Tel.: 0721 9109-0 Fax: -100
76133 Karlsruhe			info at punkt.de	http://punkt.de
AG Mannheim 108285		Gf: Juergen Egeling
    
    
More information about the freebsd-net
mailing list