Andrew
Andrew
Just cross-referncing with other restriction bc changing same lines. https://github.com/openwrt/firewall4/pull/62
Mine is read directly from RFC, but yours indeed is more precise.
dhcp clients discard otherbsource ports leaving dangling ct unreplied state for them, so both complement eachother
You can add a chain { .. hook priority +(/-) 1..49 .. } even in separate table to force intended ordering
I think stay with it as long as it works (which is IMHO a priority) With plenty of time one could change helpers listing (and all consumers of it) to...
Also +/-X priority is nice as it jumps out of the way of iptables-nft....
No, it is not about modules, but to include usermode/nfqueue helpers in the list. Then in every spot of calling chain handle the new kind of helper gadget... Lets start...
Please attach log segment assigning 2 IPs to a new vm while original machine is still on the network. Also check whether vsphere does not run competing dhcp in same...
Please edit your post and attach text log of dnsmasq (logread -e dnsmasq > conflict.txt) The picture just says you got bad wiring.
2nd refreshes previously assigned address?