• Categories
  • Recent
  • Tags
  • Popular
  • Users
  • Search
  • Register
  • Login
Netgate Discussion Forum
  • Categories
  • Recent
  • Tags
  • Popular
  • Users
  • Search
  • Register
  • Login

Revision 9d140dd5 - expected changes in behavior?

Scheduled Pinned Locked Moved 2.1 Snapshot Feedback and Problems - RETIRED
4 Posts 3 Posters 1.3k Views
Loading More Posts
  • Oldest to Newest
  • Newest to Oldest
  • Most Votes
Reply
  • Reply as topic
Log in to reply
This topic has been deleted. Only users with topic management privileges can see it.
  • B Offline
    bkraptor
    last edited by Apr 27, 2013, 7:02 PM Apr 27, 2013, 6:59 PM

    I was running a build from 23.04.2013 and I updated to:
    2.1-BETA1 (amd64)
    built on Thu Apr 25 21:20:47 EDT 2013

    After the reboot I immediately noticed something was different - the LAN interface was not replying to ICMP any more, even though routing towards the Internet worked normally. I took a good look at the rules and noticed that the first match for the ICMP packets towards the LAN interface was a rule that has a gateway group specified. This setup had worked like this for almost 2 years. I then added an explicit "from LAN net to LAN net" rule with no gateway group specified and placed it before the other rule in order to force a route table lookup for local LAN traffic. This resulted in ICMPs being replied to on the LAN interface once again. Then I noticed that traceroutes from LAN hosts towards the Internet started showing the LAN IP as the 1st hop, even though policy routing is being performed to forward the packets via a gateway group. This has never happened for as long as I've used gateway groups to route my traffic, the 1st hop always being the GW on the ISP side.

    I think this patch is most likely responsible for this change in behavior: Revision 9d140dd5. Taking a look at the code change, there seems to be a massive rewrite of the forwarding code.

    Are there any other expected behaviour changes emerging from this change?

    1 Reply Last reply Reply Quote 0
    • M Offline
      markuhde
      last edited by Apr 27, 2013, 9:34 PM

      Read my thread "pfSense Crashed" - it might be related. Thursday night's builds seem to be broken in a very severe, fundamental way.

      1 Reply Last reply Reply Quote 0
      • J Offline
        jimp Rebel Alliance Developer Netgate
        last edited by Apr 29, 2013, 5:58 PM

        New snapshots are up now, give on a try, it should be back to the behavior before those patches.

        Remember: Upvote with the 👍 button for any user/post you find to be helpful, informative, or deserving of recognition!

        Need help fast? Netgate Global Support!

        Do not Chat/PM for help!

        1 Reply Last reply Reply Quote 0
        • B Offline
          bkraptor
          last edited by Apr 29, 2013, 9:19 PM

          Thanks, with the newer build everything is back to normal.

          1 Reply Last reply Reply Quote 0
          4 out of 4
          • First post
            4/4
            Last post
          Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.
            This community forum collects and processes your personal information.
            consent.not_received