Red Hat Bugzilla – Bug 236926
RFE: No option to allow network layer protocols (e.g. IGMP for multicast)
Last modified: 2013-11-06 14:32:31 EST
Description of problem:
There's no option in the firewall configuration to allow further layer 3
protocols. e.g. to receive multicast streams (e.g. the BBC test streams) a PC
not only needs to allow the UDP ports for the stream itself, but to join and
communicate with the multicast group using IGMP. With incoming IGMP blocked, the
stream will cease as multicast group membership isn't maintained.
Using iptables, I might use:
iptables -I RH-Firewall-1-INPUT --protocol igmp --jump ACCEPT
It would therefore be useful to have an option to enable other network layer
protocols in system-config-securitylevel, or alternatively perhaps an way to add
options in /etc/sysconfig/
Version-Release number of selected component (if applicable):
Assigning to system-config-firewall in devel.
Adding FutureFeature keyword to RFE's.
Closing because there will not be big changes to system-config-firewall anymore.