Subject: Re: kern/34635: pfctl authpf broken
To: None <kern-bug-people@netbsd.org, gnats-admin@netbsd.org,>
From: Victor Igumnov <victori@lamer0.com>
List: netbsd-bugs
Date: 09/27/2006 16:55:02
The following reply was made to PR kern/34635; it has been noted by GNATS.

From: Victor Igumnov <victori@lamer0.com>
To: gnats-bugs@NetBSD.org
Cc: 
Subject: Re: kern/34635: pfctl authpf broken
Date: Wed, 27 Sep 2006 08:44:55 -0700

 Elad,
 
 	Thank you, it works perfectly.
 
 -Victor
 
 On Sep 26, 2006, at 10:40 PM, Elad Efrat wrote:
 
 > The following reply was made to PR kern/34635; it has been noted by  
 > GNATS.
 >
 > From: Elad Efrat <elad@NetBSD.org>
 > To: gnats-bugs@NetBSD.org
 > Cc:
 > Subject: Re: kern/34635: pfctl authpf broken
 > Date: Wed, 27 Sep 2006 08:33:27 +0200
 >
 >  Please try revision 1.6 of src/sys/secmodel/bsd44/ 
 > secmodel_bsd44_suser.c
 >
 >  -e.
 >
 >  victori@lamer0.com wrote:
 >>> Number:         34635
 >>> Category:       kern
 >>> Synopsis:       authpf currently broken
 >>> Confidential:   no
 >>> Severity:       critical
 >>> Priority:       high
 >>> Responsible:    kern-bug-people
 >>> State:          open
 >>> Class:          sw-bug
 >>> Submitter-Id:   net
 >>> Arrival-Date:   Wed Sep 27 04:40:00 +0000 2006
 >>> Originator:     victori@lamer0.com
 >>> Release:        NetBSD 4.99.3
 >>> Organization:
 >> victori
 >>> Environment:
 >> System: NetBSD bender.lamer0.com 4.99.3 NetBSD 4.99.3 (BENDER- 
 >> NET4801) #0: Mon Sep 25 18:54:45 PDT 2006 root@syris.local:/usr/ 
 >> obj/sys/arch/i386/compile/BENDER i386
 >> Architecture: i386
 >> Machine: i386
 >>> Description:
 >> 	
 >> 	pfctl: DIOCXBEGIN: Operation not permitted
 >> 	pfctl: DIOCXROLLBACK: Operation not permitted
 >> 	Unable to modify filters
 >> 	Connection to bender.lan clo
 >>
 >> 	Authpf users worked perfectly from from an August snapshot. Now  
 >> they are currently broken. Any login as an authpf user will fail  
 >> as above.
 >>
 >>> How-To-Repeat:
 >> 	Update to snapshot from sept 26 and use authpf as usual.
 >>> Fix:
 >> 	none that I know of.
 >>
 >>
 >
 >
 >  --
 >  Elad Efrat
 >