Comment 31 for bug 1837252

Revision history for this message
Daniel 'f0o' Preussker (dpreussker) wrote :

Additional info:

After downgrading to 1.15.1 from UCA/Stein I can see that ageing is back to 0 and packets are being received by the VMs again. But I wouldn't want to stay vulnerable..

I'm at bit lost to why ageing prevents the VM from receiving traffic. I have two pcaps capturing DHCP traffic, one from the bridge and one from the tap device.

It shows that the bridge sends and receives DHCP traffic but the tap device only sends DHCP traffic and never receives the answers.

I went further and completely override the iptables with a -J ACCEPT statement at the top of the bridge iptable chain (neutron-linuxbri-i3cf5ab97-1 in this case) to ensure that it's not iptables that filters out the packets. No Luck. Still not receiving any DHCP traffic on the tap device.

Ideas?