kern/168190: [pf] panic when using pf and route-to (maybe: bad fragment handling?)

Joerg Pulz Joerg.Pulz at frm2.tum.de
Mon Jun 4 11:52:06 UTC 2012


-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1


On Mon, 4 Jun 2012, Daniel Hartmeier wrote:

> Here's a patch that directly tests this theory.
>
> If correct, it will replace the panics with simple log messages that
> show when ipfilter left an m_len==0 mbuf.

Daniel,

thanks for all your help and the detailed informations.
The system is now running with your latest patches.
I was unable to reproduce the panics with netstat(1). Will take a look at 
dnet later.

I will keep you informed about new panics or log messages out of 
fr_check_wrapper().

Kind regards
Joerg

- -- 
The beginning is the most important part of the work.
 				-Plato
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v2.0.18 (FreeBSD)

iD8DBQFPzKEZSPOsGF+KA+MRAufHAKCJO7tHOUr1tcHEzxarTkQaGdnZfgCguqOP
1eFhcJJ5y8KSc0jxK25TIX8=
=3EA1
-----END PGP SIGNATURE-----


More information about the freebsd-pf mailing list