[Bug 280701] FreeBSD-SA-24:05 fix breaks ICMP/ICMP6 states handling in pf firewall (ping, traceroute)

From: <bugzilla-noreply_at_freebsd.org>
Date: Thu, 22 Aug 2024 15:43:50 UTC
https://bugs.freebsd.org/bugzilla/show_bug.cgi?id=280701

--- Comment #32 from Franco Fichtner <franco@opnsense.org> ---
Another user notes via https://github.com/opnsense/core/issues/7804 that the
following counters seem to be rising while NDs are ignored:

# pfctl -vvsInterfaces | grep -e '^[a-z]' -e Out6/Block

LAN/WAN on my end with the current patching applied:

igb0
        Out6/Block:  [ Packets: 28                 Bytes: 2032               ]
igb1
        Out6/Block:  [ Packets: 674                Bytes: 54907              ]

I'm going to retest with a full revert to see how these counters differ in this
particular environment here.

-- 
You are receiving this mail because:
You are the assignee for the bug.