From owner-freebsd-net@FreeBSD.ORG Sat Dec 11 10:16:26 2004 Return-Path: Delivered-To: freebsd-net@freebsd.org Received: from mx1.FreeBSD.org (mx1.freebsd.org [216.136.204.125]) by hub.freebsd.org (Postfix) with ESMTP id 359FA16A4CE; Sat, 11 Dec 2004 10:16:26 +0000 (GMT) Received: from mail2out.barnet.com.au (mail2out.barnet.com.au [202.83.176.14]) by mx1.FreeBSD.org (Postfix) with ESMTP id 6BCB643D5E; Sat, 11 Dec 2004 10:16:25 +0000 (GMT) (envelope-from edwin@mavetju.org) Received: by mail2out.barnet.com.au (Postfix, from userid 27) id 0EDF5707441; Sat, 11 Dec 2004 21:16:24 +1100 (EST) X-Viruscan-Id: <41BAC8F70000CC4CADDDA8@BarNet> Received: from mail2-auth.barnet.com.au (mail2.barnet.com.au [202.83.176.13]) (using TLSv1 with cipher DHE-RSA-AES256-SHA (256/256 bits)) Authority" (verified OK)) by mail2.barnet.com.au (Postfix) with ESMTP id C2DD270743E; Sat, 11 Dec 2004 21:16:23 +1100 (EST) Received: from k7.mavetju (edwin.adsl.barnet.com.au [203.111.122.2]) (using TLSv1 with cipher DHE-RSA-AES256-SHA (256/256 bits)) Certificate Authority" (verified OK)) by mail2-auth.barnet.com.au (Postfix) with ESMTP id 2ED6170743C; Sat, 11 Dec 2004 21:16:23 +1100 (EST) Received: by k7.mavetju (Postfix, from userid 1001) id 27D7E60DC; Sat, 11 Dec 2004 21:16:22 +1100 (EST) Date: Sat, 11 Dec 2004 21:16:22 +1100 From: Edwin Groothuis To: Gleb Smirnoff Message-ID: <20041211101622.GA1430@k7.mavetju> References: <200412021322.iB2DMxLj066304@freefall.freebsd.org> <20041202134041.GB32699@cell.sick.ru> <41B2200F.FB46E28A@freebsd.org> <20041205005101.H44692@mp2.macomnet.net> <20041204221449.GC49503@cell.sick.ru> Mime-Version: 1.0 Content-Type: text/plain; charset=us-ascii Content-Disposition: inline In-Reply-To: <20041204221449.GC49503@cell.sick.ru> User-Agent: Mutt/1.5.6i cc: Andre Oppermann cc: net@freebsd.org Subject: Re: kern/73129: [patch] IPFW misbehaviour in RELENG_5 X-BeenThere: freebsd-net@freebsd.org X-Mailman-Version: 2.1.1 Precedence: list List-Id: Networking and TCP/IP with FreeBSD List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Sat, 11 Dec 2004 10:16:26 -0000 On Sun, Dec 05, 2004 at 01:14:49AM +0300, Gleb Smirnoff wrote: > On Sun, Dec 05, 2004 at 12:53:52AM +0300, Maxim Konovalov wrote: > M> IMHO restoring the historic behaviour (even broken in some respects) > M> is the best thing we can do at the moment. > > + my vote. Mine too. > Using 'ipfw fwd' on packets just being nated, is a very common and used > technique. I know several places where people are delaying move from RELENG_4 to > RELENG_5 because of this problem. It doesn't happen often that I break the transparent WWW proxy, the POP3 virus scanner and the SMTP interceptor with one upgrade :-) Edwin -- Edwin Groothuis | Personal website: http://www.mavetju.org edwin@mavetju.org | Weblog: http://weblog.barnet.com.au/edwin/