Skip to content

Prevent VXLAN packages from Wired mesh from entering BATMAN #3025

Open
@jplitza

Description

@jplitza

Bug report

What is the problem?

Due to miscabling/misconfiguration, it is possible for packets coming from the mesh to be encapsulated in VXLAN packets, sent out of a wired mesh port, arriving at a LAN port of another node and then and being fed back into the mesh with the VXLAN encapsulation as multicast.

What is the expected behaviour?

A node receiving VXLAN packets with the correct VNI and destination address for its domain does not forward them into the mesh, even if received on a port not configured for wired mesh.

Gluon Version:

v2021.1.2 (but probably later as well?)

Site Configuration:

https://github.com/FreifunkBremen/gluon-site-ffhb

Custom patches:

Metadata

Metadata

Assignees

No one assigned

    Labels

    No labels
    No labels

    Type

    No type

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions