Skip site navigation (1)Skip section navigation (2)
Date:      Mon, 12 Apr 2010 10:47:11 -0700
From:      Freddie Cash <fjwcash@gmail.com>
To:        freebsd-ipfw@freebsd.org
Subject:   Re: Problems with ipfw in FreeBSD 8.0 / amd64
Message-ID:  <z2ib269bc571004121047ja7a2499fs323ae32dac177976@mail.gmail.com>
In-Reply-To: <1819469327.513811271001448449.JavaMail.root@mail-01.cse.ucsc.edu>
References:  <954074760.513761271001257209.JavaMail.root@mail-01.cse.ucsc.edu> <1819469327.513811271001448449.JavaMail.root@mail-01.cse.ucsc.edu>

next in thread | previous in thread | raw e-mail | index | archive | help
On Sun, Apr 11, 2010 at 8:57 AM, Tim Gustafson <tjg@soe.ucsc.edu> wrote:

> After a build/update to RELENG_8, I'm getting this as the last rule from
> "ipfw list"
>
> 00000  ip from any to any
>
> And then I get these through syslog:
>
> ipfw: ouch!, skip past end of rules, denying packet
>
> The box then becomes unavailable over TCP.
>
> I know that there is some development work going on to clean up ipfw;
> that's fine.  My question is does anyone know if this is a problem in
> RELENG_8_0_0_RELEASE as well?  Should I change my csup tag to
> RELENG_8_0_0_RELEASE and then do another build/install cycle to fix the
> problem, or will the problem still be there?
>
> Also, I know this a volunteer effort so I have no right to be pushy, but is
> there any ETR on this so that I can start tracking RELENG_8 again?
>

Use RELENG_8_0.  That's the security branch for 8.0-RELEASE.

-- 
Freddie Cash
fjwcash@gmail.com



Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?z2ib269bc571004121047ja7a2499fs323ae32dac177976>