You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
Right now firewalld either blocks or allows an ICMP packet based on its type. However, certain ICMP types (eg type 3) have multiple codes associated with them. iptables can match such packets using '--icmp-type 3/2' which matches icmp packets of type=3 and code=2. Please consider adding such functionality to firewalld.
The text was updated successfully, but these errors were encountered:
Seems like I was wrong. It appears that if you create an xml file for the specific type/code (eg protocol-unreachable.xml) then firewalld will happily use that and generate a valid ICMP rule.
Right now firewalld either blocks or allows an ICMP packet based on its type. However, certain ICMP types (eg type 3) have multiple codes associated with them. iptables can match such packets using '--icmp-type 3/2' which matches icmp packets of type=3 and code=2. Please consider adding such functionality to firewalld.
The text was updated successfully, but these errors were encountered: