-
-
Notifications
You must be signed in to change notification settings - Fork 11.9k
Description
Describe the bug
I'v created a few vlans with DSA, firewall is working fine as expected, after installed dockerd, it's not working, with the vlan the package actually come from the actual device, not the vlan bridge, thus the firewall is not working, with the defualt global forward not set to accept, the lan client can't ping to each other eventhough the lan zone has set forward to accept. the cause is that it's not treat the package from the vlan rather from an actual device.
OpenWrt version
r23497-6637af95aa
OpenWrt release
23.05.0
OpenWrt target/subtarget
mediatek/mt7622
Device
Linksys E8450 (UBI)
Image kind
Official downloaded image
Steps to reproduce
With everthing default, create few vlans, set all vlans forward to accept, but global as default reject, vlans internal client can ping right now, install dockerd, then test it again, firewall no working as expect for the vlans.
Actual behaviour
vlans firewall work as before not installing dockerd
Expected behaviour
vlans firewall are as before without dockerd.
Additional info
firewall not treat vlans as vlans, the package actually come from a device. makes it not working without allow global forward, not even with layer 2 communications.
Diffconfig
No response
Terms
- I am reporting an issue for OpenWrt, not an unsupported fork.