On Thu, Aug 13, 2015 at 08:58:15AM +0200, Bernhard Thaler wrote: > 230ac490f7fba introduced a dependency to CONFIG_IPV6 which breaks bridging > of IPv6 packets on a bridge with CONFIG_IPV6=n. > > Sysctl entry /proc/sys/net/bridge/bridge-nf-call-ip6tables defaults to 1, > for this reason packets are handled by br_nf_pre_routing_ipv6(). When compiled > with CONFIG_IPV6=n this function returns NF_DROP but should return NF_ACCEPT > to let packets through. > > Change CONFIG_IPV6=n br_nf_pre_routing_ipv6() return value to NF_ACCEPT. > > Tested with a simple bridge with two interfaces and IPv6 packets trying > to pass from host on left side to host on right side of the bridge. > > Fixes: 230ac490f7fba ("netfilter: bridge: split ipv6 code into separated file") Applied this oneliner to the nf tree, thanks. -- To unsubscribe from this list: send the line "unsubscribe netfilter-devel" in the body of a message to majordomo@xxxxxxxxxxxxxxx More majordomo info at http://vger.kernel.org/majordomo-info.html