Page MenuHomeFreeBSD

pf: Fix table entry counter toggling
ClosedPublic

Authored by markj on Dec 1 2020, 6:39 PM.
Tags
None
Referenced Files
Unknown Object (File)
Tue, Apr 14, 8:57 AM
Unknown Object (File)
Tue, Apr 14, 2:15 AM
Unknown Object (File)
Mon, Apr 13, 5:08 AM
Unknown Object (File)
Sat, Mar 28, 7:01 AM
Unknown Object (File)
Tue, Mar 24, 9:06 AM
Unknown Object (File)
Mar 18 2026, 12:42 AM
Unknown Object (File)
Mar 1 2026, 2:36 PM
Unknown Object (File)
Mar 1 2026, 6:28 AM

Details

Summary

When updating a table, pf will keep table entry structures corresponding
to addresses that are in both of the old and new tables. However, the
update may also enable or disable per-entry counters which are allocated
separately. Thus when toggling PFR_TFLAG_COUNTERS, the entries may be
missing counters or may have unused counters allocated.

Fix the problem by modifying pfr_ina_commit() to transfer counters
from or to the shadow table.

Reported by: sigsys@gmail.com

Test Plan

Regression tests pass. I will write a test case for this if the code change seems ok.

Diff Detail

Repository
rS FreeBSD src repository - subversion
Lint
Lint Passed
Unit
No Test Coverage
Build Status
Buildable 35145
Build 32098: arc lint + arc unit