Page MenuHomeFreeBSD

mbuf: PACKET_TAG_PF should not be persistent
ClosedPublic

Authored by kp on Oct 26 2021, 9:53 AM.
Tags
None
Referenced Files
F151979752: D32664.diff
Sat, Apr 11, 9:58 PM
F151979244: D32664.id.diff
Sat, Apr 11, 9:53 PM
F151974083: D32664.diff
Sat, Apr 11, 9:08 PM
F151901421: D32664.id97466.diff
Sat, Apr 11, 10:56 AM
Unknown Object (File)
Sat, Apr 4, 11:57 AM
Unknown Object (File)
Fri, Mar 27, 11:29 AM
Unknown Object (File)
Fri, Mar 27, 3:49 AM
Unknown Object (File)
Wed, Mar 25, 7:42 PM
Subscribers

Details

Summary

We should clear firewall tags on loopback, icmp reflection, or if_epair
transmission. Left over tags can produce unexpected behaviour,
especially on if_epair where a and b interfaces can be in different
vnets, and have different firewall policies set.

MFC after: 3 weeks
Sponsored by: Rubicon Communications, LLC ("Netgate")

Diff Detail

Repository
rG FreeBSD src repository
Lint
Lint Not Applicable
Unit
Tests Not Applicable