incoming packet on ng_l2tp interface bypass PF firewall rules.
not nat, no filter.
is not effective on FreeBSD 10
How-To-Repeat: setup l2tp/ipsec LNS on FreeBSD and connect from client(such as android).
a packet from client can not filtering or natting.
On Fri, Mar 14, 2014 at 04:05:37PM +0900, HASHI Hiroaki wrote:
H> System: FreeBSD tomba.meridiani.jp 10.0-STABLE FreeBSD 10.0-STABLE #3 r262965: Thu Mar 13 18:44:26 JST 2014 email@example.com:/usr/obj/usr/src/sys/TOMBA amd64
H> ng_l2tp: net/mpd5
H> ipsec: security/ipsec-tools
H> incoming packet on ng_l2tp interface bypass PF firewall rules.
H> not nat, no filter.
Can you please check whether the issue is fixed or not by r263307
commit to stable/10?
Totus tuus, Glebius.
Submitter was asked for feedback.
But the problem of kern/169620 that was hidden due to this issue will
Over to maintainer(s).
For bugs that match the following
- Status Is In progress
- Untouched since 2018-01-01.
- Affects Base System OR Documentation
Reset to open status.
I did a quick pass but if you are getting this email it might be worthwhile to double check to see if this bug ought to be closed.