5509c00
From c79a00436c90b86833799d83b5de64a1f42d1975 Mon Sep 17 00:00:00 2001
5509c00
From: =?UTF-8?q?Zbigniew=20J=C4=99drzejewski-Szmek?= <zbyszek@in.waw.pl>
5509c00
Date: Thu, 19 Jun 2014 21:13:56 -0400
5509c00
Subject: [PATCH] man: also describe an udev rule for bridge sysctl
5509c00
5509c00
(cherry picked from commit 71418295125c542d3edd1e7251bb0701ef1af89b)
5509c00
---
5509c00
 man/sysctl.d.xml | 19 ++++++++++++++++++-
5509c00
 1 file changed, 18 insertions(+), 1 deletion(-)
5509c00
5509c00
diff --git a/man/sysctl.d.xml b/man/sysctl.d.xml
5509c00
index 78c4e80b..ed9e997f 100644
5509c00
--- a/man/sysctl.d.xml
5509c00
+++ b/man/sysctl.d.xml
5509c00
@@ -154,7 +154,24 @@
5509c00
                 </example>
5509c00
 
5509c00
                 <example>
5509c00
-                        <title>Disable packet filter on the bridge</title>
5509c00
+                        <title>Disable packet filter on the bridge (method one)</title>
5509c00
+                        <para><filename>/etc/udev/rules.d/99-bridge.conf</filename>:
5509c00
+                        </para>
5509c00
+
5509c00
+                        <programlisting>ACTION=="add", SUBSYSTEM=="module", KERNEL=="bridge", RUN+="/usr/lib/systemd/systemd-sysctl --prefix=/proc/sys/net/bridge"
5509c00
+</programlisting>
5509c00
+
5509c00
+                        <para><filename>/etc/sysctl.d/bridge.conf</filename>:
5509c00
+                        </para>
5509c00
+
5509c00
+                        <programlisting>net.bridge.bridge-nf-call-ip6tables = 0
5509c00
+net.bridge.bridge-nf-call-iptables = 0
5509c00
+net.bridge.bridge-nf-call-arptables = 0
5509c00
+</programlisting>
5509c00
+                </example>
5509c00
+
5509c00
+                <example>
5509c00
+                        <title>Disable packet filter on the bridge (method two)</title>
5509c00
                         <para><filename>/etc/modules-load.d/bridge.conf</filename>:
5509c00
                         </para>
5509c00