
OPERATIONAL DEFECT DATABASE
...


...

Getting this error when upgrading from FOS v8.2.3b to v9.0.x: Firmwaredownload is not allowed because one or more ipfilter policy is configured with FORWARD rule. IPFilter forwarding is not supported in the target version. Please modify or delete ipfilter policies using "ipfilter --delete" or "ipfilter --delrule" Firmwaredownload failed. The output of the command "ipfilter --show -a": admin> ipfilter --show -a Legends: [Proto-Protocol, P-Permit, D-Deny, FWD-FORWARD, I/P-INPUT] Name: default_ipv4, Type: ipv4, State: active Rule Source_IP Proto Dest_Port Action Flow Destination_IP 1 any tcp 22 P I/P any 2 any tcp 23 P I/P any 3 any tcp 80 P I/P any 4 any tcp 443 P I/P any 5 any udp 9019 P FWD 10.21.x.x 6 any udp 9019 P FWD 10.21.y.y 7 any udp 161 P I/P any 8 any udp 123 P I/P any 9 any tcp 600-1023 P I/P any 10 any udp 600-1023 P I/P any Name: default_ipv6, Type: ipv6, State: active Rule Source_IP Proto Dest_Port Action Flow Destination_IP 1 any tcp 22 P I/P any 2 any tcp 23 P I/P any 3 any tcp 80 P I/P any 4 any tcp 443 P I/P any 5 any udp 161 P I/P any 6 any udp 123 P I/P any 7 any tcp 600-1023 P I/P any 8 any udp 600-1023 P I/P any In the active IPv4 policy "default_ipv4," the user has Rules 5 and 6 set with FWD rules. Forwarding rules manage the bidirectional traffic between the external Ethernet interface (eth0/bond0) and the inband management interface (inbd+).
Refer to the "General Upgrade Considerations" section in the Brocade Fabric OS Software Upgrade Guide, 9.0.x Software Upgrade Guide 9.0.x. If the active or defined IP Filter policies are configured with Packet Forwarding rules, the Fabric OS 9.0.x firmware download is blocked. IP Filter forwarding is not supported in Fabric OS 9.0.x.
Check with the user what the dependency on these IP addresses is.If the user is OK with changing the dependency of these addresses, delete these rules and then proceed with firmwaredownload. ipfilter --delrule <ipfilter_policyname> -rule <rule_number> ipfilter --save ipfilter --activate <ipfilter_policyname>
Click on a version to see all relevant bugs
Dell Integration
Learn more about where this data comes from
Bug Scrub Advisor
Streamline upgrades with automated vendor bug scrubs
BugZero Enterprise
Wish you caught this bug sooner? Get proactive today.