]> CyberLeo.Net >> Repos - FreeBSD/FreeBSD.git/commit
pf tests: Test that 'set skip on <group>' works on new group members
authorkp <kp@FreeBSD.org>
Mon, 12 Oct 2020 12:41:10 +0000 (12:41 +0000)
committerkp <kp@FreeBSD.org>
Mon, 12 Oct 2020 12:41:10 +0000 (12:41 +0000)
commit7b56445c20c6839d3a250382169d5900f81d6637
treed2a3cb855dfdf2ceeb5b476ffcd4506c634baa8c
parent8dde2795cd5809dd50029a0b04912141c75e846c
pf tests: Test that 'set skip on <group>' works on new group members

There's a know issue where new group members don't get the 'set skip on'
applied until the rules are re-loaded.

Do this by setting rules that block all traffic, but skip members of the
'epair' group. If we can communicate over the epair interface we know the set
skip rule took effect, even if the rule was set before the interface was
created.

MFC after: 2 weeks
tests/sys/netpfil/pf/set_skip.sh