[Bug 271393] 13.2 IPSEC panics accessing web server on vpn server when packets are fragmented

From: <bugzilla-noreply_at_freebsd.org>
Date: Sat, 13 May 2023 19:36:09 UTC
https://bugs.freebsd.org/bugzilla/show_bug.cgi?id=271393

            Bug ID: 271393
           Summary: 13.2 IPSEC panics accessing web server on vpn server
                    when packets are fragmented
           Product: Base System
           Version: 13.1-STABLE
          Hardware: amd64
                OS: Any
            Status: New
          Severity: Affects Only Me
          Priority: ---
         Component: kern
          Assignee: bugs@FreeBSD.org
          Reporter: Russell.Yount@gmail.com

Created attachment 242146
  --> https://bugs.freebsd.org/bugzilla/attachment.cgi?id=242146&action=edit
Output from dmesg related to panics

The FreeBSD 13.2 kernel crashes when VPN client accesses web service on the
VPN server and the web server respond requires packet to fragemented. This
occurs with either IPv4 or IPv6 with or without UDP encapsulation.
Sending large pings from vpn client works correctly.

The uname output of the vpn server is

FreeBSD XXX 13.2-RELEASE (continued on next line)
FreeBSD 13.2-RELEASE releng/13.2-n254617-525ecfdad597 GENERIC amd64

The panic messages are attached.

I am willing to work with a developer to get this fixed.

-Russ

Russell J. Yount <Russell.Yount@gmail.com>

-- 
You are receiving this mail because:
You are the assignee for the bug.