Skip site navigation (1)Skip section navigation (2)
Date:      Sun, 18 Mar 2018 05:32:23 +0000
From:      bugzilla-noreply@freebsd.org
To:        freebsd-ipfw@FreeBSD.org
Subject:   [Bug 226688] [ipfw] rejects adding 255.255.255.255 to a table
Message-ID:  <bug-226688-7515-4nStCSzB4p@https.bugs.freebsd.org/bugzilla/>
In-Reply-To: <bug-226688-7515@https.bugs.freebsd.org/bugzilla/>
References:  <bug-226688-7515@https.bugs.freebsd.org/bugzilla/>

next in thread | previous in thread | raw e-mail | index | archive | help
https://bugs.freebsd.org/bugzilla/show_bug.cgi?id=3D226688

--- Comment #5 from Dave Eckhardt <de0u+fbbugs@andrew.cmu.edu> ---
(In reply to Rodney W. Grimes from comment #4)

I agree that workarounds are possible.  For example, if some values
won't fit into a table, it is possible to handle those values via
a separate rule check.

But firewall rule systems are hard enough to understand if they work
the way they are documented as working.  Random misbehaviors, even if
survivable, make the system much harder to understand.  Again please
see bug #180731 which is a different problem with the same "odd" value
(it seems as if on amd64 machines you can get the value into the table
but you can't see it once it's there).

I guess I would argue against closing either bug, on the grounds that
it/they might make a nice starter project for somebody looking to do
serious work on ipfw.

Thanks for looking at my report so quickly!

--=20
You are receiving this mail because:
You are the assignee for the bug.=



Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?bug-226688-7515-4nStCSzB4p>