Page MenuHomeVyOS Platform

Conntrack enabled by default
Open, HighPublicBUG


Reported on the forum:

Possibly missed during my firewall refactor, vyatta made use of FW_CONNTRACK and NAT_CONNTRACK chains to enable/disable conntrack depending if rules are found to match on state in firewall/nat modules.


Difficulty level
Unknown (require assessment)
Why the issue appeared?
Will be filled on close
Is it a breaking change?
Unspecified (possibly destroys the router)
Issue type
Bug (incorrect behavior)

Event Timeline

sdev triaged this task as High priority.
sdev created this task.

I don't think this ever worked as intended: see T3275#103228, vyos-build PR 185, and T3821.