Re: [PATCHv4 nf-next] netfilter: bridge: fix IPv6 packets not being bridged with CONFIG_IPV6=n

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

 



On Thu, Aug 13, 2015 at 08:58:15AM +0200, Bernhard Thaler wrote:
> 230ac490f7fba introduced a dependency to CONFIG_IPV6 which breaks bridging
> of IPv6 packets on a bridge with CONFIG_IPV6=n.
> 
> Sysctl entry /proc/sys/net/bridge/bridge-nf-call-ip6tables defaults to 1,
> for this reason packets are handled by br_nf_pre_routing_ipv6(). When compiled
> with CONFIG_IPV6=n this function returns NF_DROP but should return NF_ACCEPT
> to let packets through.
> 
> Change CONFIG_IPV6=n br_nf_pre_routing_ipv6() return value to NF_ACCEPT.
> 
> Tested with a simple bridge with two interfaces and IPv6 packets trying
> to pass from host on left side to host on right side of the bridge.
> 
> Fixes: 230ac490f7fba ("netfilter: bridge: split ipv6 code into separated file")

Applied this oneliner to the nf tree, thanks.
--
To unsubscribe from this list: send the line "unsubscribe netfilter-devel" in
the body of a message to majordomo@xxxxxxxxxxxxxxx
More majordomo info at  http://vger.kernel.org/majordomo-info.html



[Index of Archives]     [Netfitler Users]     [LARTC]     [Bugtraq]     [Yosemite Forum]

  Powered by Linux