On 03/27/2018 10:48 AM, Brian J. Murrell wrote: > On Tue, 2018-03-27 at 10:18 -0700, Tom Eastep wrote: >> >> Which kernel version? > > 4.4.92 on LEDE 17.01.4. > >> A number of us have seen this problem (it >> currently exists in RHEL 7) > > Who backport *tons* of stuff to their "3.10.0" kernel. > >> which is traceable to a kernel issue. > > Do you have a link to any upstream kernel issue? > > Have we identified what it is in shorewall6 that is triggering it given > that it only happens when I have shorewall6-lite started? >
I've asked the maintainer of Foobar Linux, a RHEL-based distribution, for details. He found a neighbor discovery cleanup patch from way back in 2014 that solved the problem for him. The problem symptoms vary, depending on the NIC and how protocols are stacked (bond, vlan, etc.). Also, some cases only show up when Shorewall Multi-ISP is configured. I experienced the problem on Debian 8 for a while. One user who had the problem recently, found that specifying the upstream router's link-local IP as the gateway (rather than its global IP) solved the problem for him. -Tom -- Tom Eastep \ Q: What do you get when you cross a mobster with Shoreline, \ an international standard? Washington, USA \ A: Someone who makes you an offer you can't http://shorewall.org \ understand \_______________________________________________
signature.asc
Description: OpenPGP digital signature
------------------------------------------------------------------------------ Check out the vibrant tech community on one of the world's most engaging tech sites, Slashdot.org! http://sdm.link/slashdot
_______________________________________________ Shorewall-users mailing list Shorewall-users@lists.sourceforge.net https://lists.sourceforge.net/lists/listinfo/shorewall-users