Hi,

We find a bug in current bridge+netfilter code: when in routing mode
and the out device is bond to a logical bridge device,  the MAC address
match isn't work.


The test scenario is like this: 
                _______
                |              |eth2
                |              |-------| brg0
        eth0 |              | eth1  |
  A------>|              |-------|-------->B
                |_Linux_ |
eth1 and eth2 are bond to make a bridge device brg0,  host A connects
linux box through eth0, host B connects through eth1.

in FORWARD chain
$iptables -A FORWARD -m mac --mac-source MAC_ADDR_OF_A
doesn't work.

We use nf-0.0.8-bds-against-2.4.18.

Regards,

Zeng Yu


_______________________________________________
Bridge mailing list
[EMAIL PROTECTED]
http://www.math.leidenuniv.nl/mailman/listinfo/bridge

Reply via email to