From 04edf8f2f251f0c2a133843b898cad84f9312880 Mon Sep 17 00:00:00 2001 From: "Ondrej Zajicek (work)" Date: Wed, 19 Dec 2018 18:10:39 +0100 Subject: IO: Workaround for broken FreeBSD behavior FreeBSD silently changes TTL to 1 when MSG_DONTROUTE is used, even when it is explicitly set to another value. That breaks TTL security sockets, including BFD which always uses TTL 255. Bad FreeBSD! --- sysdep/unix/io.c | 4 +++- 1 file changed, 3 insertions(+), 1 deletion(-) (limited to 'sysdep/unix/io.c') diff --git a/sysdep/unix/io.c b/sysdep/unix/io.c index f7a9e29f..a90ddffd 100644 --- a/sysdep/unix/io.c +++ b/sysdep/unix/io.c @@ -1614,7 +1614,9 @@ sk_sendmsg(sock *s) }; #ifdef CONFIG_DONTROUTE_UNICAST - if (ipa_is_ip4(s->daddr) && ip4_is_unicast(ipa_to_ip4(s->daddr))) + /* FreeBSD silently changes TTL to 1 when MSG_DONTROUTE is used, therefore we + cannot use it for other cases (e.g. when TTL security is used). */ + if (ipa_is_ip4(s->daddr) && ip4_is_unicast(ipa_to_ip4(s->daddr)) && (s->ttl == 1)) flags = MSG_DONTROUTE; #endif -- cgit v1.2.3