Skip site navigation (1)Skip section navigation (2)
Date:      Sun, 17 Nov 2002 11:55:50 -0800 (PST)
From:      Archie Cobbs <archie@dellroad.org>
To:        Scott Ullrich <sullrich@CRE8.COM>
Cc:        "'greg.panula@dolaninformation.com'" <greg.panula@dolaninformation.com>, David Kelly <dkelly@hiwaay.net>, FreeBSD-stable@FreeBSD.ORG
Subject:   Re: IPsec/gif VPN tunnel packets on wrong NIC in ipfw?
Message-ID:  <200211171955.gAHJtptv046501@arch20m.dellroad.org>
In-Reply-To: <2F6DCE1EFAB3BC418B5C324F13934C9601D23C0F@exchange.corp.cre8.com>

next in thread | previous in thread | raw e-mail | index | archive | help
Scott Ullrich wrote:
> I am also having this same problem.  If I revert back to 4.7 RELEASE the
> problem goes away.
> 
> Anyone have an idea of what changed the default behavior between 4.7 RELEASE
> and STABLE or if there is a better workaround other than adding a rule
> before the divert statement allowing the internal networks to talk?

Try reverting rev. 1.130.2.40 of netinet/ip_input.c (there may be
other files in this commit; didn't look (you could do it by time)).
This is just a guess because it seems like it might be relevant.

    http://www.freebsd.org/cgi/cvsweb.cgi/src/sys/netinet/ip_input.c?only_with_tag=RELENG_4

-Archie

__________________________________________________________________________
Archie Cobbs     *     Packet Design     *     http://www.packetdesign.com

To Unsubscribe: send mail to majordomo@FreeBSD.org
with "unsubscribe freebsd-stable" in the body of the message




Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?200211171955.gAHJtptv046501>