luci-app-firewall: rules: allow ICMPv6 ND types
authorAaron Jones <aaronmdjones@gmail.com>
Sun, 11 Aug 2019 06:08:07 +0000 (06:08 +0000)
committerAaron Jones <aaronmdjones@gmail.com>
Sun, 11 Aug 2019 06:10:47 +0000 (06:10 +0000)
commit17f3e03930a79aecbb6ebcf851e47473d099ad32
tree9e285558535a46d8817d13e8cbd448245313a01d
parent9def6faa4e3d35242ff4690ced5c87851441e800
luci-app-firewall: rules: allow ICMPv6 ND types

The "Match ICMP Type" dropdown had entries for router
solicitation & router advertisements, but not the more
generic neighbour solicitation & neighbour advertisements.

A LAN cannot function without Neighbour Discovery; this
means that setting a LAN interface default input policy to
REJECT breaks IPv6 WAN access for all hosts on that LAN;
as they can no longer discover their gateway's MAC address.
This can be fixed with appropriate rules allowing ND input,
which this patch allows one to do in LuCI.

The spelling is the same as in [1].

[1] <https://git.openwrt.org/?p=openwrt/openwrt.git;a=blob;f=package/network/config/firewall/files/firewall.config>

Signed-off-by: Aaron Jones <aaronmdjones@gmail.com>
applications/luci-app-firewall/htdocs/luci-static/resources/view/firewall/rules.js