Actions
Bug #6927
closed1 to 1 NAT allows entry of mixed IP addresses
Start date:
11/13/2016
Due date:
% Done:
100%
Estimated time:
Plus Target Version:
Release Notes:
Affected Version:
2.3.2
Affected Architecture:
Description
When adding a 1:1 NAT entry it is possible to enter a mix of IPv4 and IPv6 addresses in the various External Internal and Destination IP boxes, which is not caught by the validation. Thus getting "error loading the rules", such as this example rubbish that I entered to get the message:
/rc.filter_configure_sync: New alert found: There were error(s) loading the rules: /tmp/rules.debug:45: binat ip versions must match - The line in question reads [45]: binat on em0 from 1.2.3.4 to aaaa::4/31 -> bbbb::0
I guess it should make sure all the addresses are of one IP address family.
Actions