[opensuse-security] "bsalg: parser failed"
Hi, I'm running a firewall with shorewall-4.6.3.4 (SuSE package) on openSUSE 13.2. Since about a week I receive lots and lots of messages like these: Sep 15 09:37:32 proxy kernel: bsalg: parser failed Sep 15 09:37:33 proxy kernel: bsalg: parser failed Sep 15 09:37:33 proxy kernel: bsalg: parser failed Sep 15 09:37:35 proxy kernel: net_ratelimit: 2 callbacks suppressed Last Kernel update was on August 18th, kernel-default 3.16.7-24.1. But the messages did not start immediately after this update. Shorewall is the original version included in the distribution. Any ideas? Thanks! Markus -- To unsubscribe, e-mail: opensuse-security+unsubscribe@opensuse.org To contact the owner, e-mail: opensuse-security+owner@opensuse.org
On Tue, Sep 15, 2015 at 09:55:16AM +0200, Markus Gaugusch wrote:
Hi,
I'm running a firewall with shorewall-4.6.3.4 (SuSE package) on openSUSE 13.2. Since about a week I receive lots and lots of messages like these:
Sep 15 09:37:32 proxy kernel: bsalg: parser failed Sep 15 09:37:33 proxy kernel: bsalg: parser failed Sep 15 09:37:33 proxy kernel: bsalg: parser failed Sep 15 09:37:35 proxy kernel: net_ratelimit: 2 callbacks suppressed
Last Kernel update was on August 18th, kernel-default 3.16.7-24.1. But the messages did not start immediately after this update. Shorewall is the original version included in the distribution.
This comes from net/ipv4/netfilter/nf_nat_snmp_basic.c and happens if SNMP requests can not be correctly NATed. Open a bug agaisnt the kernel. If possible, try to capture this SNMP network traffic that causes this problem. Ciao, Marcus -- To unsubscribe, e-mail: opensuse-security+unsubscribe@opensuse.org To contact the owner, e-mail: opensuse-security+owner@opensuse.org
On Sep 15, Marcus Meissner <meissner@suse.de> wrote:
On Tue, Sep 15, 2015 at 09:55:16AM +0200, Markus Gaugusch wrote:
Hi,
I'm running a firewall with shorewall-4.6.3.4 (SuSE package) on openSUSE 13.2. Since about a week I receive lots and lots of messages like these:
Sep 15 09:37:32 proxy kernel: bsalg: parser failed Sep 15 09:37:33 proxy kernel: bsalg: parser failed Sep 15 09:37:33 proxy kernel: bsalg: parser failed Sep 15 09:37:35 proxy kernel: net_ratelimit: 2 callbacks suppressed
Last Kernel update was on August 18th, kernel-default 3.16.7-24.1. But the messages did not start immediately after this update. Shorewall is the original version included in the distribution.
This comes from net/ipv4/netfilter/nf_nat_snmp_basic.c and happens if SNMP requests can not be correctly NATed.
Open a bug agaisnt the kernel.
If possible, try to capture this SNMP network traffic that causes this problem.
Hi Marcus! Thank you very much for this hint!!!! :) :) This explains another problem I was having, and I can resolve it by using another router for this traffic. So: Problem resolved :)
Ciao, Marcus
Markus -- To unsubscribe, e-mail: opensuse-security+unsubscribe@opensuse.org To contact the owner, e-mail: opensuse-security+owner@opensuse.org
participants (2)
-
Marcus Meissner
-
Markus Gaugusch