From owner-freebsd-bugs@FreeBSD.ORG Tue Mar 18 17:10:01 2014 Return-Path: Delivered-To: freebsd-bugs@smarthost.ysv.freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2001:1900:2254:206a::19:1]) (using TLSv1 with cipher ADH-AES256-SHA (256/256 bits)) (No client certificate requested) by hub.freebsd.org (Postfix) with ESMTPS id A70EFC38 for ; Tue, 18 Mar 2014 17:10:01 +0000 (UTC) Received: from freefall.freebsd.org (freefall.freebsd.org [IPv6:2001:1900:2254:206c::16:87]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by mx1.freebsd.org (Postfix) with ESMTPS id 94363F03 for ; Tue, 18 Mar 2014 17:10:01 +0000 (UTC) Received: from freefall.freebsd.org (localhost [127.0.0.1]) by freefall.freebsd.org (8.14.8/8.14.8) with ESMTP id s2IHA19o003010 for ; Tue, 18 Mar 2014 17:10:01 GMT (envelope-from gnats@freefall.freebsd.org) Received: (from gnats@localhost) by freefall.freebsd.org (8.14.8/8.14.8/Submit) id s2IHA1LN003009; Tue, 18 Mar 2014 17:10:01 GMT (envelope-from gnats) Date: Tue, 18 Mar 2014 17:10:01 GMT Message-Id: <201403181710.s2IHA1LN003009@freefall.freebsd.org> To: freebsd-bugs@FreeBSD.org Cc: From: Gleb Smirnoff Subject: Re: kern/187566: incomming ng_l2tp/ipsec packet bypass PF firewall X-BeenThere: freebsd-bugs@freebsd.org X-Mailman-Version: 2.1.17 Precedence: list Reply-To: Gleb Smirnoff List-Id: Bug reports List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Tue, 18 Mar 2014 17:10:01 -0000 The following reply was made to PR kern/187566; it has been noted by GNATS. From: Gleb Smirnoff To: HASHI Hiroaki Cc: FreeBSD-gnats-submit@freebsd.org Subject: Re: kern/187566: incomming ng_l2tp/ipsec packet bypass PF firewall Date: Tue, 18 Mar 2014 21:03:18 +0400 Hiroaki-san, On Fri, Mar 14, 2014 at 04:05:37PM +0900, HASHI Hiroaki wrote: H> >Environment: H> System: FreeBSD tomba.meridiani.jp 10.0-STABLE FreeBSD 10.0-STABLE #3 r262965: Thu Mar 13 18:44:26 JST 2014 hashiz@stenmark.meridiani.jp:/usr/obj/usr/src/sys/TOMBA amd64 H> H> ng_l2tp: net/mpd5 H> ipsec: security/ipsec-tools H> H> >Description: H> incoming packet on ng_l2tp interface bypass PF firewall rules. H> not nat, no filter. Can you please check whether the issue is fixed or not by r263307 commit to stable/10? -- Totus tuus, Glebius.