Page MenuHomePhabricator

VMs with ferm host-level firewall do not permit DHCPv6 responses
Closed, ResolvedPublic

Description

Apr 24 16:04:44 tools-legacy-redirector-3 ulogd[80915]: [fw-in-drop] IN=ens3 OUT= MAC=fa:16:3e:ce:77:45:fa:16:3e:1d:45:e7:86:dd SRC=fe80::f816:3eff:fe1d:
45e7 DST=fe80::f816:3eff:fece:7745 LEN=246 TC=192 HOPLIMIT=64 FLOWLBL=751526 PROTO=UDP SPT=547 DPT=546 LEN=206 MARK=0x0
Apr 24 16:04:44 tools-legacy-redirector-3 ulogd[80915]: [fw-in-drop] IN=ens3 OUT= MAC=fa:16:3e:ce:77:45:fa:16:3e:81:6b:eb:86:dd SRC=fe80::f816:3eff:fe81:
6beb DST=fe80::f816:3eff:fece:7745 LEN=246 TC=192 HOPLIMIT=64 FLOWLBL=58737 PROTO=UDP SPT=547 DPT=546 LEN=206 MARK=0x0

Event Timeline

Change #1138837 had a related patch set uploaded (by Majavah; author: Majavah):

[operations/puppet@production] P:wmcs::instance: Permit DHCPv6 response traffic on host firewall

https://gerrit.wikimedia.org/r/1138837

Change #1138837 merged by Majavah:

[operations/puppet@production] P:wmcs::instance: Permit DHCPv6 response traffic on host firewall

https://gerrit.wikimedia.org/r/1138837