Subject: Re: Problems with 2.0.1 vlan interfaces
To: Chris Ross <cross+netbsd@distal.com>
From: Manuel Bouyer <bouyer@antioche.eu.org>
List: netbsd-users
Date: 01/23/2005 15:25:42
On Sat, Jan 22, 2005 at 01:09:35PM -0500, Chris Ross wrote:
>   Hi there.  I have an i386 machine I've set up, running a build of the 
> 2.0.1
> RELEASE tag, with a single wm interface which itself has no IP 
> address(es)
> on it, but it has 6 vlan interfaces configured onto it.
> 
>   Most traffic seems to flow properly.  However, I get the occasional 
> "Permission
> denied" error when trying to send packets.  As an exmaple:
> 
> vlan5: flags=8843<UP,BROADCAST,RUNNING,SIMPLEX,MULTICAST> mtu 1500
>         vlan: 27 parent: wm0
>         address: 00:08:c7:16:84:bb
>         inet 192.168.118.60 netmask 0xffffffc0 broadcast 192.168.118.63
>         inet6 fe80::208:c7ff:fe16:84bb%vlan5 prefixlen 64 scopeid 0xb
> borderguard# ping 192.168.118.20
> PING 192.168.118.20 (192.168.118.20): 56 data bytes
> ping: sendto: Permission denied
> ping: sendto: Permission denied

Have you setup ipfilter on this box ?

-- 
Manuel Bouyer <bouyer@antioche.eu.org>
     NetBSD: 26 ans d'experience feront toujours la difference
--