Subject: Re: kern/26692 (no change w/ ipf416)
To: None <kern-bug-people@netbsd.org, gnats-admin@netbsd.org,>
From: Arto Selonen <arto@selonen.org>
List: netbsd-bugs
Date: 02/28/2005 16:16:01
The following reply was made to PR kern/26692; it has been noted by GNATS.
From: Arto Selonen <arto@selonen.org>
To: gnats-bugs@netbsd.org
Cc:
Subject: Re: kern/26692 (no change w/ ipf416)
Date: Mon, 28 Feb 2005 18:14:57 +0200 (EET)
Hi!
Box upgraded with whatever sources us2 anoncvs mirror gave on 20050224.
Setting ipfs=YES in /etc/rc.conf and rebooting still leads to a
non-networking system. All interfaces seem to be up, ipfilter seems
to have proper rules loaded, ipmon is registering new states being
created, yet no traffic seems to be getting through regardless of
origin or destination.
I think I saw something like "nat: incomplete read: 4 != 1040"
or similar on console, but I could not find it from logs, and
it scrolled off screen before I could make a note of it (no serial
console).
ipmon logs also showed some internal network traffic on an external
interface (being blocked as it should). Of course it could have been
somebody spoofing source addresses, but I'd bet on kernel confusion instead.
Artsi
--
#######======------ http://www.selonen.org/arto/ --------========########
Everstinkuja 5 B 35 Don't mind doing it.
FIN-02600 Espoo arto@selonen.org Don't mind not doing it.
Finland tel +358 50 560 4826 Don't know anything about it.