Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    RIP $100 {awarded}

    Scheduled Pinned Locked Moved Completed Bounties
    40 Posts 6 Posters 37.0k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • B
      billm
      last edited by

      OK, it's not complete and not yet in the package XML, but I just committed a RIP package
      http://cvstrac.pfsense.com/chngview?cn=12526

      I'm not sure I caught whether the machine you'd run this on is a full install or embedded.  If it's full, then all that should be needed for you to be able to test is to get the package info moved into the package XML.

      –Bill

      pfSense core developer
      blog - http://www.ucsecurity.com/
      twitter - billmarquette

      1 Reply Last reply Reply Quote 0
      • P
        pcatiprodotnet
        last edited by

        Hi Bill,
        I run imbedded CF versions.  If you prefer, I'll attempt to find some free time at work one day and do a full install on an extra pc and test.  As far as what RIP features we desire, we'll be happy if pfSense is simply capable of fully & correctly communicating with other RIP enabled routers/devices (such as RIP versions: V1, V2 broadcast & V2 Multicast).
        Thank you,
        -Pete

        1 Reply Last reply Reply Quote 0
        • B
          billm
          last edited by

          @pcatiprodotnet:

          Hi Bill,
          I run imbedded CF versions.  If you prefer, I'll attempt to find some free time at work one day and do a full install on an extra pc and test.  As far as what RIP features we desire, we'll be happy if pfSense is simply capable of fully & correctly communicating with other RIP enabled routers/devices (RIP versions: V1, V2 broadcast, & V2 Multicast).
          Thank you,
          -Pete

          It'd be easier if you can test with a full install.  I've got no problem giving you a patch for embedded later once we've established that it works well.  routed is already installed on all the embedded platforms so it's a matter of copying two files over and making a small change to fbegin.inc to enable it (I think - I haven't spent alot of time trying to make this work on embedded, so I may be missing a step, but OLSR is implemented as a package, so this should just hook in the same way).

          –Bill

          pfSense core developer
          blog - http://www.ucsecurity.com/
          twitter - billmarquette

          1 Reply Last reply Reply Quote 0
          • P
            pcatiprodotnet
            last edited by

            I haven't the time to personally test this any time soon.  If anyone interested could test this pfSense RIP with even your home router (assuming it has RIP), I can go ahead and award this bounty.
            Thanks, -pc

            1 Reply Last reply Reply Quote 0
            • S
              sullrich
              last edited by

              Do other devs count?  I would love to help Bill get some loving, too ;)

              1 Reply Last reply Reply Quote 0
              • P
                pcatiprodotnet
                last edited by

                Of course!
                Thanks, -pc

                1 Reply Last reply Reply Quote 0
                • B
                  billm
                  last edited by

                  @pcatiprodotnet:

                  Of course!
                  Thanks, -pc

                  Thanks, I'll work on wrapping this up this weekend then.  Just been waiting for you to have time to be able to test ;)

                  –Bill

                  pfSense core developer
                  blog - http://www.ucsecurity.com/
                  twitter - billmarquette

                  1 Reply Last reply Reply Quote 0
                  • B
                    billm
                    last edited by

                    @billm:

                    @pcatiprodotnet:

                    Of course!
                    Thanks, -pc

                    Thanks, I'll work on wrapping this up this weekend then.  Just been waiting for you to have time to be able to test ;)

                    –Bill

                    OK, routed package posted.  It has the following features:
                    Supports RIP v1 and RIP v2
                    Allows you to choose which interface to run RIP on (the version is global, can't choose per interface)
                    Allows you to set a RIP v2 password (this will apply to all RIP enabled interfaces)

                    Some of the items I wanted to add (individual settings per interface) weren't an option with our current package code.  It was my understanding this wasn't a requirement.  If the package is considered acceptable, I'd be willing to create a patch to enable this functionality on an embedded install (packages only work on full installs).

                    –Bill

                    pfSense core developer
                    blog - http://www.ucsecurity.com/
                    twitter - billmarquette

                    1 Reply Last reply Reply Quote 0
                    • T
                      tunge2
                      last edited by

                      this a nice package!

                      1 Reply Last reply Reply Quote 0
                      • B
                        billm
                        last edited by

                        @tunge2:

                        this a nice package!

                        Working for you tunge2 ?

                        –Bill

                        pfSense core developer
                        blog - http://www.ucsecurity.com/
                        twitter - billmarquette

                        1 Reply Last reply Reply Quote 0
                        • B
                          buraglio
                          last edited by

                          it installs and starts for me. 
                          root  77143  0.0  0.8  1356  956  ??  Ss  11:54PM  0:00.30 /sbin/routed

                          I also see packets on the wire:

                          [buraglio@precious:~ ] sudo tcpdump -i en1 -vvv -s 1500 port 520                                                                            <3045>
                          tcpdump: listening on en1, link-type EN10MB (Ethernet), capture size 1500 bytes
                          00:00:48.897769 IP (tos 0x0, ttl  1, id 11754, offset 0, flags [none], length: 92) 192.168.209.1.router > rip2-routers.mcast.net.router: [udp sum ok]
                                  RIPv2, Response, length: 64, routes: 3
                                    Simple Text Authentication data: password
                                    AFI: IPv4:  192.168.209.0/27, tag 0x0000, metric: 1, next-hop: self
                                    AFI: IPv4: dhcp-74-136-192-0.insightbb.com/19, tag 0x0000, metric: 1, next-hop: self
                                  0x0000:  0202 0000 ffff 0002 7061 7373 776f 7264
                                  0x0010:  0000 0000 0000 0000 0002 0000 c0a8 d100
                                  0x0020:  ffff ffe0 0000 0000 0000 0001 0002 0000
                                  0x0030:  4a88 c000 ffff e000 0000 0000 0000 0001
                          00:01:18.899978 IP (tos 0x0, ttl  1, id 725, offset 0, flags [none], length: 92) 192.168.209.1.router > rip2-routers.mcast.net.router: [udp sum ok]
                                  RIPv2, Response, length: 64, routes: 3
                                    Simple Text Authentication data: password
                                    AFI: IPv4:  192.168.209.0/27, tag 0x0000, metric: 1, next-hop: self
                                    AFI: IPv4: dhcp-74-136-192-0.insightbb.com/19, tag 0x0000, metric: 1, next-hop: self
                                  0x0000:  0202 0000 ffff 0002 7061 7373 776f 7264
                                  0x0010:  0000 0000 0000 0000 0002 0000 c0a8 d100
                                  0x0020:  ffff ffe0 0000 0000 0000 0001 0002 0000
                                  0x0030:  4a88 c000 ffff e000 0000 0000 0000 0001

                          It starts and stops from the gui. 
                          I'll bounce the box and hopefully get another RIP enabled device on tomorrow.

                          nb

                          https://www.forwardingplane.net/

                          1 Reply Last reply Reply Quote 0
                          • S
                            sullrich
                            last edited by

                            Ship it!

                            j/k

                            1 Reply Last reply Reply Quote 0
                            • B
                              buraglio
                              last edited by

                              Sorry for the delay, I finally got around to bouncing this box that's running routed and found that it was not running after a restart.  /usr/local/etc/rc.d/ did not have a startup script for routed which would pobably explain it.  I reinstalled the pkg which of course restarted the service but there was still no startup script so I don't expect it to be running after a restart. 
                              So if it operates as I'm reading it should a simple startup script should start it and begin forwarding packets among the connected nets (since the box is acting as a router).  I don't have anything else that runs rip close by that I can test with to see but as I saw before it's at least talking as I'd expect it to.

                              This worked at the most basic level (starting and stopping the service) on my box:

                              –snip

                              #!/bin/sh

                              rc_start() {
                                      /sbin/routed
                              }

                              rc_stop() {
                                      /usr/bin/killall routed
                              }

                              case $1 in
                                      start)
                                              rc_start
                                              ;;
                                      stop)
                                              rc_stop
                                              ;;
                                      restart)
                                              rc_stop
                                              rc_start
                                              ;;
                              esac

                              ---snip

                              --nb

                              https://www.forwardingplane.net/

                              1 Reply Last reply Reply Quote 0
                              • B
                                billm
                                last edited by

                                Gah, thanks, I'll get that added.

                                –Bill

                                pfSense core developer
                                blog - http://www.ucsecurity.com/
                                twitter - billmarquette

                                1 Reply Last reply Reply Quote 0
                                • B
                                  billm
                                  last edited by

                                  @billm:

                                  Gah, thanks, I'll get that added.

                                  –Bill

                                  Bah, this showed a bug in package startup, thanks, fixed now in HEAD.  Waiting on Scott to sync the change back to RELENG_1 (although now we've gotta check the known working packages to make sure I didn't just break them…doh!)

                                  --Bill

                                  pfSense core developer
                                  blog - http://www.ucsecurity.com/
                                  twitter - billmarquette

                                  1 Reply Last reply Reply Quote 0
                                  • P
                                    pcatiprodotnet
                                    last edited by

                                    Has anyone verifed RIP as working and communicating routes with other RIP devices yet?
                                    Thanks, -pc

                                    1 Reply Last reply Reply Quote 0
                                    • B
                                      billm
                                      last edited by

                                      @pcatiprodotnet:

                                      Has anyone verifed RIP as working and communicating routes with other RIP devices yet?
                                      Thanks, -pc

                                      Not that I'm aware of.

                                      –Bill

                                      pfSense core developer
                                      blog - http://www.ucsecurity.com/
                                      twitter - billmarquette

                                      1 Reply Last reply Reply Quote 0
                                      • S
                                        sullrich
                                        last edited by

                                        Can someone please verify that this pacakge works so we can close out this bounty?  Thanks!

                                        1 Reply Last reply Reply Quote 0
                                        • B
                                          billm
                                          last edited by

                                          Since nobody is interested in providing feedback on this package, I've pulled it from RELENG_1.  If there's not feedback on it during our next beta cycle it won't make it into 1.1 either.

                                          –Bill

                                          pfSense core developer
                                          blog - http://www.ucsecurity.com/
                                          twitter - billmarquette

                                          1 Reply Last reply Reply Quote 0
                                          • D
                                            diegoc
                                            last edited by

                                            Hi all

                                            have installed this package in 3 pf in my test lab, and configured with RIP v2, all the pfs work in routing mode, without NAT, But when i go to Diagnostics -> Routes, there is nothing.  I have to do something else, to get this package working?

                                            1 Reply Last reply Reply Quote 0
                                            • First post
                                              Last post
                                            Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.