Skip to content

fix(arp): separate reply authorization from AnyIP admission - #39

Merged
fslongjin merged 1 commit into
DragonOS-Community:dragonos/v0.12.0from
fslongjin:codex/dkc050-arp-response-ownership
Oct 1, 2026
Merged

fslongjin merged 1 commit into
DragonOS-Community:dragonos/v0.12.0from
fslongjin:codex/dkc050-arp-response-ownership

Conversation

@fslongjin

Copy link
Copy Markdown
Member

Summary

  • Add optional sender/target ARP reply authorization to the existing ingress integration trait.
  • Keep AnyIP IP admission separate from namespace address ownership, preserving standalone behavior and neighbor learning.
  • Support explicitly authorized weak-host and zero-source DAD replies without learning 0.0.0.0.

Motivation

An AnyIP container interface could answer requests for the bridge gateway using its own MAC. Competing gateway replies poisoned peer neighbor caches and misdirected published-port HTTP responses. The integration must decide namespace ownership; the protocol library still validates and constructs ARP packets.

Validation

  • 759 unit tests and 7 doctests passed.
  • noalloc IPv4 and alloc IPv6-only checks passed.
  • Formatting and diff checks passed.
  • Three independent adversarial integration reviews completed; the source-address policy boundary was addressed using sender/target arguments.

No optional proxy-ARP/NUD subsystem is introduced by this change.

Add an optional sender/target ARP reply policy to IpIngressFilter so integrations can authorize namespace-local weak-host replies without granting implicit proxy ARP to every AnyIP interface.

Keep the standalone None behavior and neighbor-learning gates unchanged. Permit explicitly authorized zero-source DAD requests without learning the zero address. Pass the hook through Ethernet ingress independently of the IP admission hook.

Cover foreign targets, weak-host replies, DAD, source/target arguments, and unchanged neighbor learning. Validation: 759 unit tests, 7 doctests, noalloc IPv4 and alloc IPv6-only checks, formatting, and adversarial integration review.

Signed-off-by: longjin <longjin@dragonos.org>
@fslongjin

Copy link
Copy Markdown
Member Author

@codex review

@fslongjin
fslongjin merged commit a2c9cc0 into DragonOS-Community:dragonos/v0.12.0 Oct 1, 2026
13 checks passed
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant