Page MenuHomeFreeBSD

mbuf: PACKET_TAG_PF should not be persistent
ClosedPublic

Authored by kp on Oct 26 2021, 9:53 AM.
Tags
None
Referenced Files
F135470210: D32664.id.diff
Mon, Nov 10, 3:25 AM
Unknown Object (File)
Sat, Nov 8, 4:43 PM
Unknown Object (File)
Thu, Nov 6, 3:33 PM
Unknown Object (File)
Thu, Nov 6, 9:13 AM
Unknown Object (File)
Tue, Nov 4, 6:12 PM
Unknown Object (File)
Tue, Nov 4, 6:12 PM
Unknown Object (File)
Tue, Nov 4, 6:09 PM
Unknown Object (File)
Tue, Nov 4, 6:07 PM
Subscribers

Details

Summary

We should clear firewall tags on loopback, icmp reflection, or if_epair
transmission. Left over tags can produce unexpected behaviour,
especially on if_epair where a and b interfaces can be in different
vnets, and have different firewall policies set.

MFC after: 3 weeks
Sponsored by: Rubicon Communications, LLC ("Netgate")

Diff Detail

Repository
rG FreeBSD src repository
Lint
Lint Not Applicable
Unit
Tests Not Applicable