Re: CFR: bridge locking

From: Daniel C. Sobral (dcs_at_tcoip.com.br)
Date: 08/21/03

  • Next message: Doug Ambrisko: "Re: CFR: bridge locking"
    Date: Thu, 21 Aug 2003 14:31:43 -0300
    To: Doug Ambrisko <ambrisko@ambrisko.com>
    
    

    Doug Ambrisko wrote:
    > |
    ...
    > | The test I'm doing is the following:
    > |
    > | kldload bridge
    > | sysctl net.link.ether.bridge=1
    > | sysctl net.link.ether.bridge_cfg="fxp1 fxp3"
    > | ifconfig fxp1 up
    > | ifconfig fxp3 up
    > | ifconfig vlan0 create
    > | ifconfig vlan0 vlan 999 vlandev fxp1
    > | ifconfig vlan0 200.220.254.190/26
    > |
    > | On the switch side, the port connected to fxp1 is down and the one
    > | connected to fxp3 is up. Next, I ping all around. What I see with your
    > | patch is:
    > |
    > | ARP packets received on fxp3 go to fxp1 but not vlan0.
    > | ARP packets sent through vlan0 go to fxp1 but not fxp3.
    ...
    >
    > No my mistake ... I was thinking you were trying to bridge the
    > traffic out of the FreeBSD vlan device. That is what my patch fixes.
    > Sorry.
    >
    > For kicks you could try netgraph bridging. I found it sometimes works
    > better. Tweak the script in /usr/share/example/netgraph. For some
    > purposes I use bridge others I use the netgraph version. Depends on
    > the need.
    >
    > FWIW I have created a vmnet iface then bridged to it. However, for it
    > to work with netgraph you need to make it work. I use vmnet since it
    > is persistant and I can just do an
    > echo -n > /dev/vmnet1
    > to create it. Then I can do various things to it. So you could run
    > the vlan off vmnet1 and then bridge it to the others.

    Err... mmmm... I don't know what a vmnet is, and "apropos" told me no
    tales. :-)

    Alas, I tried netgraph to. It suffers from about the same problem.
    Packets on the bridge do not go to the vlan, and packets from the vlan
    do not get sent to the bridged interfaces (just the attached one).

    I tried ng_iface, but vlan won't attach to that.

    Someone mentioned ng_eiface, which, from the looks of it, has potential.
    Unfortunately, there's no documentation on it, so I don't have any idea
    on how to use it.

    And, on the curious side, it's has been mfc in time for 4.6-RELEASE, but
    it still hasn't been hasn't been connected to the build. :-)

    I'll cc Julian in this message, see if he feels guilty or something. :-)

    -- 
    Daniel C. Sobral                   (8-DCS)
    Gerencia de Operacoes
    Divisao de Comunicacao de Dados
    Coordenacao de Seguranca
    VIVO Centro Oeste Norte
    Fones: 55-61-313-7654/Cel: 55-61-9618-0904
    E-mail: Daniel.Capo@tco.net.br
             Daniel.Sobral@tcoip.com.br
             dcs@tcoip.com.br
    Outros:
    	dcs@newsguy.com
    	dcs@freebsd.org
    	capo@notorious.bsdconspiracy.net
    Der Horizont vieler Menschen ist ein Kreis mit Radius Null -
    und das nennen sie ihren Standpunkt.
    _______________________________________________
    freebsd-net@freebsd.org mailing list
    http://lists.freebsd.org/mailman/listinfo/freebsd-net
    To unsubscribe, send any mail to "freebsd-net-unsubscribe@freebsd.org"
    

  • Next message: Doug Ambrisko: "Re: CFR: bridge locking"

    Relevant Pages

    • Re: Cisco 2811 with HWIC-4ESW
      ... Does anyone have the foggiest idea of how to get fa0/0 to share a vlan ... "Extending VLANs within Layer 3 switches" and seems to be close but it ... wasn't all that essential for me to have the other interface. ... bridge group, and they're together. ...
      (comp.dcom.sys.cisco)
    • Re: Cisco 2821 ISR config with Wifi
      ... (my intranet vlan is 10, and this uses very basic authentication, not ... bridge 10 protocol ieee ... interface FastEthernet0 ...
      (comp.dcom.sys.cisco)
    • Re: 876W Wireless
      ... interface Dot11Radio0 ... encryption vlan 1 mode ciphers tkip ... did or didn't you get the bridge working? ... I have the same conf (authentication apart, I'm at the beginning) but it doesn't work ...
      (comp.dcom.sys.cisco)
    • Re: Cisco 2811 with HWIC-4ESW
      ... Does anyone have the foggiest idea of how to get fa0/0 to share a vlan with ... Then you create a bridge virtual interface for the router to use instead of the vlan interface that connects to the switch module. ... Join both the vlan interface from the switch and the physical interface from the ouside of the router into the bridge group, ...
      (comp.dcom.sys.cisco)
    • Re: CFR: bridge locking
      ... |> | If you get bridge to send/receive packets to/from vlan interfaces ... | ifconfig vlan0 200.220.254.190/26 ...
      (freebsd-net)