Bug#1002706: Fwd: nftables stateless NAT in raw table mangles fragmented UDP packets

2022-01-28 Thread Steffen Weinreich
Hi all, The following Patch on top of a  4.19.208 is working in our test system since Jan 5. cheerio Steve Am 27.01.22 um 22:59 schrieb Florian Westphal: > Salvatore Bonaccorso wrote: >> Hi, >> >> On Thu, Jan 27, 2022 at 06:26:10PM +0100, Steffen Weinreich wrote: >>> Hi all, >>> >>> The patch

Bug#1002706: Fwd: nftables stateless NAT in raw table mangles fragmented UDP packets

2022-01-27 Thread Florian Westphal
Salvatore Bonaccorso wrote: > Hi, > > On Thu, Jan 27, 2022 at 06:26:10PM +0100, Steffen Weinreich wrote: > > Hi all, > > > > The patch made its way to mainline / latest > > > > Any chance to get it backported to 4.19? > > It would be need to have a backport sent sta...@vger.kernel.org . Once

Bug#1002706: Fwd: nftables stateless NAT in raw table mangles fragmented UDP packets

2022-01-27 Thread Salvatore Bonaccorso
Hi, On Thu, Jan 27, 2022 at 06:26:10PM +0100, Steffen Weinreich wrote: > Hi all, > > The patch made its way to mainline / latest > > Any chance to get it backported to 4.19? It would be need to have a backport sent sta...@vger.kernel.org . Once it lands in the older stable series, we can

Bug#1002706: Fwd: nftables stateless NAT in raw table mangles fragmented UDP packets

2022-01-27 Thread Steffen Weinreich
Hi all, The patch made its way to mainline / latest Any chance to get it backported to 4.19? > From: Pablo Neira Ayuso > > [ Upstream commit 4e1860a3863707e8177329c006d10f9e37e097a8 ] > > IP fragments do not come with the transport header, hence skip bogus > layer 4 checksum updates. > >

Bug#1002706: Fwd: nftables stateless NAT in raw table mangles fragmented UDP packets

2022-01-04 Thread Steffen Weinreich
Hi! >> Regarding 4.19, the patch does not work there since the struct pkt does >> not have a member fragoff. I suppose this is hidden deeply in the skbuf >> structure... > Sad. You might ask the maintainers if they can consider the fix as > well for older stable series, mentioneing back the one

Bug#1002706: Fwd: nftables stateless NAT in raw table mangles fragmented UDP packets

2022-01-04 Thread Salvatore Bonaccorso
Hi Steffen, On Tue, Jan 04, 2022 at 05:35:11PM +0100, Steffen Weinreich wrote: > > Am 04.01.22 um 17:31 schrieb Salvatore Bonaccorso: > > Awesome. Can you confirm that as well on the upstrem thread, so i > > guess the maintainers will finalize the change for inclusion in > > mainline? > > For

Bug#1002706: Fwd: nftables stateless NAT in raw table mangles fragmented UDP packets

2022-01-04 Thread Steffen Weinreich
Am 04.01.22 um 17:31 schrieb Salvatore Bonaccorso: > Awesome. Can you confirm that as well on the upstrem thread, so i > guess the maintainers will finalize the change for inclusion in > mainline? For 5.16 I did. Regarding 4.19, the patch does not work there since the struct pkt does not have

Bug#1002706: Fwd: nftables stateless NAT in raw table mangles fragmented UDP packets

2022-01-04 Thread Salvatore Bonaccorso
Hi Steffen, On Tue, Jan 04, 2022 at 12:46:30PM +0100, Steffen Weinreich wrote: > Hi > > The following patch did resolve the issue for me on 5.16.0-rc8. I will > also test it on 4.19.0-*-amd64 as soon as I have a working build env for > a buster kernel.. Awesome. Can you confirm that as well on

Bug#1002706: Fwd: nftables stateless NAT in raw table mangles fragmented UDP packets

2022-01-04 Thread Steffen Weinreich
Hi The following patch did resolve the issue for me on 5.16.0-rc8. I will also test it on 4.19.0-*-amd64 as soon as I have a working build env for a buster kernel.. cheerio Steve Weitergeleitete Nachricht Betreff:Re: nftables stateless NAT in raw table mangles