From owner-freebsd-pf@FreeBSD.ORG Mon Dec 22 11:06:56 2008 Return-Path: Delivered-To: freebsd-pf@FreeBSD.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2001:4f8:fff6::34]) by hub.freebsd.org (Postfix) with ESMTP id A65851065676 for ; Mon, 22 Dec 2008 11:06:56 +0000 (UTC) (envelope-from owner-bugmaster@FreeBSD.org) Received: from freefall.freebsd.org (freefall.freebsd.org [IPv6:2001:4f8:fff6::28]) by mx1.freebsd.org (Postfix) with ESMTP id 400648FC2B for ; Mon, 22 Dec 2008 11:06:56 +0000 (UTC) (envelope-from owner-bugmaster@FreeBSD.org) Received: from freefall.freebsd.org (localhost [127.0.0.1]) by freefall.freebsd.org (8.14.3/8.14.3) with ESMTP id mBMB6uPr060660 for ; Mon, 22 Dec 2008 11:06:56 GMT (envelope-from owner-bugmaster@FreeBSD.org) Received: (from gnats@localhost) by freefall.freebsd.org (8.14.3/8.14.3/Submit) id mBMB6tZV060656 for freebsd-pf@FreeBSD.org; Mon, 22 Dec 2008 11:06:55 GMT (envelope-from owner-bugmaster@FreeBSD.org) Date: Mon, 22 Dec 2008 11:06:55 GMT Message-Id: <200812221106.mBMB6tZV060656@freefall.freebsd.org> X-Authentication-Warning: freefall.freebsd.org: gnats set sender to owner-bugmaster@FreeBSD.org using -f From: FreeBSD bugmaster To: freebsd-pf@FreeBSD.org Cc: Subject: Current problem reports assigned to freebsd-pf@FreeBSD.org X-BeenThere: freebsd-pf@freebsd.org X-Mailman-Version: 2.1.5 Precedence: list List-Id: "Technical discussion and general questions about packet filter \(pf\)" List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Mon, 22 Dec 2008 11:06:56 -0000 Note: to view an individual PR, use: http://www.freebsd.org/cgi/query-pr.cgi?pr=(number). The following is a listing of current problems submitted by FreeBSD users. These represent problem reports covering all versions including experimental development code and obsolete releases. S Tracker Resp. Description -------------------------------------------------------------------------------- o kern/129060 pf [pf] [tun] pf doesn't forget the old tun IP o kern/127920 pf [pf] ipv6 and synproxy don't play well together o conf/127814 pf [pf] The flush in pf_reload in /etc/rc.d/pf does not w o conf/127511 pf [patch] /usr/sbin/authpf: add authpf folders to BSD.ro o kern/127439 pf [pf] deadlock in pf o kern/127345 pf [pf] Problem with PF on FreeBSD7.0 [regression] o kern/127121 pf [pf] [patch] pf incorrect log priority o kern/127042 pf [pf] [patch] pf recursion panic if interface group is o kern/125467 pf [pf] pf keep state bug while handling sessions between s kern/124933 pf [pf] [ip6] pf does not support (drops) IPv6 fragmented o kern/124364 pf [pf] [panic] Kernel panic with pf + bridge o kern/122773 pf [pf] pf doesn't log uid or pid when configured to o kern/122014 pf [pf] [panic] FreeBSD 6.2 panic in pf o kern/121704 pf [pf] PF mangles loopback packets o kern/120281 pf [pf] [request] lost returning packets to PF for a rdr o kern/120057 pf [pf] [patch] Allow proper settings of ALTQ_HFSC. The c o bin/118355 pf [pf] [patch] pfctl(8) help message options order false o kern/114567 pf [pf] LOR pf_ioctl.c + if.c o kern/114095 pf [carp] carp+pf delay with high state limit o kern/111220 pf [pf] repeatable hangs while manipulating pf tables s conf/110838 pf [pf] tagged parameter on nat not working on FreeBSD 5. o kern/93825 pf [pf] pf reply-to doesn't work o sparc/93530 pf [pf] Incorrect checksums when using pf's route-to on s o kern/92949 pf [pf] PF + ALTQ problems with latency o kern/82271 pf [pf] cbq scheduler cause bad latency 25 problems total. From owner-freebsd-pf@FreeBSD.ORG Mon Dec 22 15:23:04 2008 Return-Path: Delivered-To: freebsd-pf@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2001:4f8:fff6::34]) by hub.freebsd.org (Postfix) with ESMTP id A107C1065676 for ; Mon, 22 Dec 2008 15:23:04 +0000 (UTC) (envelope-from crt@soup.si) Received: from mail-bw0-f19.google.com (mail-bw0-f19.google.com [209.85.218.19]) by mx1.freebsd.org (Postfix) with ESMTP id 0CC188FC1C for ; Mon, 22 Dec 2008 15:23:03 +0000 (UTC) (envelope-from crt@soup.si) Received: by bwz12 with SMTP id 12so5866011bwz.19 for ; Mon, 22 Dec 2008 07:23:02 -0800 (PST) Received: by 10.180.249.4 with SMTP id w4mr2342743bkh.162.1229958179330; Mon, 22 Dec 2008 07:02:59 -0800 (PST) Received: by 10.181.4.4 with HTTP; Mon, 22 Dec 2008 07:02:59 -0800 (PST) Message-ID: Date: Mon, 22 Dec 2008 16:02:59 +0100 From: "Crt Zerjal" To: freebsd-pf@freebsd.org MIME-Version: 1.0 Content-Type: text/plain; charset=UTF-8 Content-Transfer-Encoding: 7bit Content-Disposition: inline X-Content-Filtered-By: Mailman/MimeDel 2.1.5 Subject: reply-to in RELENG_7not working for networks attached to router X-BeenThere: freebsd-pf@freebsd.org X-Mailman-Version: 2.1.5 Precedence: list List-Id: "Technical discussion and general questions about packet filter \(pf\)" List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Mon, 22 Dec 2008 15:23:04 -0000 hi, this is my config file that worked well on RELENG_6.2 ext_ip1 = "{ x.x.81.190 }" ext_ip2 = "{ y.y.6.177 }" gw1 = "{ x.x.81.161 }" gw2 = "{ y.y.0.1 }" # NAT rdr on le0 proto tcp from any to $ext_ip1 port { 80 } -> 192.168.233.1 rdr on le2 proto tcp from any to $ext_ip2 port { 80 } -> 192.168.233.1 # RULES pass in quick on le0 reply-to ( em0 $gw1 )from any to any keep state pass in quick on le2 reply-to ( em1 $gw2 ) from any to any keep state but on RELENG_7 if the ip accessing one of the wans is in the subnet of the other wan the response is routed through the wrong interface -- some ip lets say y.y.15.123 acess the router on x.x.81.190 on port 80 then reaches my web server on 192.168.233.1 and should leave on the same interface that it came in but it is routed back on the other if From owner-freebsd-pf@FreeBSD.ORG Mon Dec 22 21:44:11 2008 Return-Path: Delivered-To: freebsd-pf@hub.freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2001:4f8:fff6::34]) by hub.freebsd.org (Postfix) with ESMTP id 5486B106564A; Mon, 22 Dec 2008 21:44:11 +0000 (UTC) (envelope-from linimon@FreeBSD.org) Received: from freefall.freebsd.org (freefall.freebsd.org [IPv6:2001:4f8:fff6::28]) by mx1.freebsd.org (Postfix) with ESMTP id 2A3CC8FC13; Mon, 22 Dec 2008 21:44:11 +0000 (UTC) (envelope-from linimon@FreeBSD.org) Received: from freefall.freebsd.org (linimon@localhost [127.0.0.1]) by freefall.freebsd.org (8.14.3/8.14.3) with ESMTP id mBMLiBX9048563; Mon, 22 Dec 2008 21:44:11 GMT (envelope-from linimon@freefall.freebsd.org) Received: (from linimon@localhost) by freefall.freebsd.org (8.14.3/8.14.3/Submit) id mBMLiBhp048559; Mon, 22 Dec 2008 21:44:11 GMT (envelope-from linimon) Date: Mon, 22 Dec 2008 21:44:11 GMT Message-Id: <200812222144.mBMLiBhp048559@freefall.freebsd.org> To: linimon@FreeBSD.org, freebsd-bugs@FreeBSD.org, freebsd-pf@FreeBSD.org From: linimon@FreeBSD.org Cc: Subject: Re: kern/129861: [pf] [patch] Argument names reversed in pf_table.c:_copyout() X-BeenThere: freebsd-pf@freebsd.org X-Mailman-Version: 2.1.5 Precedence: list List-Id: "Technical discussion and general questions about packet filter \(pf\)" List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Mon, 22 Dec 2008 21:44:11 -0000 Old Synopsis: Argument names reversed in pf_table.c:_copyout() New Synopsis: [pf] [patch] Argument names reversed in pf_table.c:_copyout() Responsible-Changed-From-To: freebsd-bugs->freebsd-pf Responsible-Changed-By: linimon Responsible-Changed-When: Mon Dec 22 21:43:49 UTC 2008 Responsible-Changed-Why: Over to maintainer(s). http://www.freebsd.org/cgi/query-pr.cgi?pr=129861