Skip site navigation (1)Skip section navigation (2)
Date:      Sat, 3 Jul 2010 15:29:33 +0200
From:      Reinhard Haller <reinhard.haller@interactive-net.de>
To:        freebsd-pf@freebsd.org
Subject:   urpf-failed & ipv6
Message-ID:  <4C2F3B3D.70306@interactive-net.de>

next in thread | raw e-mail | index | archive | help
Hi,

I recently discovered a strange behavior on my border router.
In the following ruleset:

block log all
block in log quick from urpf-failed to any
pass quick on $int_if inet6 proto udp from any to any port ripng
block drop on !$int_if inet6 proto udp from any to any port ripng

all occurrences of

fe80::<mac-address>%$int_if -> ff02::9

were blocked by the urpf-failed rule.

Any suggestuions why this happens?

Thanks Reinhard




Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?4C2F3B3D.70306>