[Bug 1155] arp forward filter doesn't work

bugzilla-daemon at netfilter.org bugzilla-daemon at netfilter.org
Mon Jun 5 21:47:01 CEST 2017


https://bugzilla.netfilter.org/show_bug.cgi?id=1155

Florian Westphal <fw at strlen.de> changed:

           What    |Removed                     |Added
----------------------------------------------------------------------------
                 CC|                            |fw at strlen.de

--- Comment #1 from Florian Westphal <fw at strlen.de> ---
Indeed, I think we should reject the forward chain.

I guess its there because the legacy 'call-arptables' sysctl from bridge
netfilter does allow to push packets through arptables, but I think with
nft you can just use bridge family to filter arp packets that pass through a
bridge.

-- 
You are receiving this mail because:
You are watching all bug changes.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://lists.netfilter.org/pipermail/netfilter-buglog/attachments/20170605/11155422/attachment.html>


More information about the netfilter-buglog mailing list