Skip site navigation (1)Skip section navigation (2)
Date:      Wed, 18 Dec 2019 12:47:14 +0100
From:      Axel Rau <Axel.Rau@chaos1.de>
To:        net@FreeBSD.ORG
Subject:   [RESOLVED]  --was: Re: TCP 3-way-handshake fails
Message-ID:  <6BBBA26D-10CD-41AE-806E-818FC8E884DE@Chaos1.DE>
In-Reply-To: <12A16AC0-651B-4CAC-814A-FD5A8FF68D2F@Chaos1.DE>
References:  <12A16AC0-651B-4CAC-814A-FD5A8FF68D2F@Chaos1.DE>

next in thread | previous in thread | raw e-mail | index | archive | help


--Apple-Mail=_4508E5B3-4F4C-4B7F-AB92-AEB5C38F15ED
Content-Transfer-Encoding: quoted-printable
Content-Type: text/plain;
	charset=utf-8

After router startup, its routingtable shows entries like this:

2a05:bec0:26:2::70                 0c:c4:7a:ce:9e:90       UHLc
2a05:bec0:26:2::71                 link#1                  UHLc

The 2nd one is an alias address for the 1st one (a jail).

After ping6 from the router to this 2nd address, it looks as expected:

fw1# ping6 2a05:bec0:26:2::71
2a05:bec0:26:2::70                 0c:c4:7a:ce:9e:90       UHLc
2a05:bec0:26:2::71                 0c:c4:7a:ce:9e:90       UHLc

The reason for this misbehaviour was that I disabled auto linklocal
(-auto_linklocal in rc.conf).

Axel

> Am 10.12.2019 um 11:40 schrieb Axel Rau <Axel.Rau@chaos1.de>:
>=20
> Hi all
>=20
> I have a fancy behaviour on a FreeBSD 12.1 box, with
> some servers (e.g. rsyslogd, nginx) which happens with
> some clients, with others not (both are in the same sub-
> nets). Everything is dualstack. Disabling IPv6, stops
> the problem.
> The traffic is routed via 2 firewalls OpenBSD 6.6)
> and a VPN.
>=20
> I attach 2 textfiles (tcpdump) with an extracted flow:
>=20
> gw1, the OpenBSD side
> db3: the FreeBSD side
>=20
> I also include an example, where the problem
> does not happen: db3,ok.txt
>=20
> Which details needs to be collected to insulate
> the problem?
>=20
> Any help is very welcome,
> Axel
>=20
> <gw1.32404.txt><db3.32404.txt><db3.ok.txt>
> ---
> PGP-Key: CDE74120  =E2=98=80  computing @ chaos claudius
>=20

---
PGP-Key: CDE74120  =E2=98=80  computing @ chaos claudius


--Apple-Mail=_4508E5B3-4F4C-4B7F-AB92-AEB5C38F15ED
Content-Transfer-Encoding: 7bit
Content-Disposition: attachment;
	filename=signature.asc
Content-Type: application/pgp-signature;
	name=signature.asc
Content-Description: Message signed with OpenPGP

-----BEGIN PGP SIGNATURE-----
Version: GnuPG/MacGPG2 v2.2
Comment: GPGTools - http://gpgtools.org
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=wm9U
-----END PGP SIGNATURE-----

--Apple-Mail=_4508E5B3-4F4C-4B7F-AB92-AEB5C38F15ED--



Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?6BBBA26D-10CD-41AE-806E-818FC8E884DE>