Skip site navigation (1)Skip section navigation (2)
Date:      Thu, 10 Apr 1997 01:52:09 GMT
From:      Adam David <adam@veda.is>
To:        FreeBSD-gnats-submit@freebsd.org
Subject:   kern/3244: ipfw flush closes connections
Message-ID:  <199704100152.BAA08167@veda.is>
Resent-Message-ID: <199704100140.SAA03419@freefall.freebsd.org>

next in thread | raw e-mail | index | archive | help

>Number:         3244
>Category:       kern
>Synopsis:       ipfw flush closes connections
>Confidential:   no
>Severity:       serious
>Priority:       high
>Responsible:    freebsd-bugs
>State:          open
>Class:          sw-bug
>Submitter-Id:   current-users
>Arrival-Date:   Wed Apr  9 18:40:01 PDT 1997
>Last-Modified:
>Originator:     Adam David
>Organization:
Veda Internet
>Release:        FreeBSD 3.0-CURRENT i386
>Environment:

	ipfw used as a filtering firewall component

>Description:

	When ipfw is used to flush previously established rules, (it seems)
        all tcp connections open at the time become closed. Since flush is
	typical at the beginning of ipfw scripts and applies to rules not
	connections, this behaviour is wrong. Several months ago, it was
	possible to circumvent it (at least in part) by running /sbin/ipfw
	as a background process, but no longer.

>How-To-Repeat:

	sh /etc/rc.firewall

>Fix:
	none known
>Audit-Trail:
>Unformatted:



Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?199704100152.BAA08167>