Mau
2013-08-31 02:31:27 UTC
Hi,
I have 2 Debian testing boxes running a very similar setup (both running
the latest aptosid kernel); on one of them, since the
iptables/libxtables10 packages have been upgraded from 1.4.19.1-1 to
1.4.20-2, shorewall-init can't start shorewall anymore and for this
reason ifupdown also fails triggering firewall up.
Shorewall can be successfully started later on, and ifupdown starts
working too; in /var/log/shorewall-init.log I found a possible reason:
[...]
Aug 30 14:07:32 Shorewall up triggered by lo
Aug 30 14:07:32 Shorewall up triggered by lo
Aug 30 14:07:32 Shorewall up triggered by --all
Aug 30 14:07:36 Processing /etc/shorewall/params ...
Aug 30 14:07:36 Processing /etc/shorewall/shorewall.conf...
Aug 30 14:07:36 Loading Modules...
---> Aug 30 14:07:37 ERROR: Log level INFO requires LOG Target in
your kernel and iptables
Aug 30 14:09:28 Shorewall up triggered by wlan0
Aug 30 14:09:28 up on interface wlan0 ignored
[...]
Trying to downgrade iptables to the previous version seems to fix the issue.
Oddly enough, the other box works perfectly even with the new version of
iptables, and shorewall6 doesn't seem affected on both boxes.
Do you have any hint?
Thanks
Maurizio
I have 2 Debian testing boxes running a very similar setup (both running
the latest aptosid kernel); on one of them, since the
iptables/libxtables10 packages have been upgraded from 1.4.19.1-1 to
1.4.20-2, shorewall-init can't start shorewall anymore and for this
reason ifupdown also fails triggering firewall up.
Shorewall can be successfully started later on, and ifupdown starts
working too; in /var/log/shorewall-init.log I found a possible reason:
[...]
Aug 30 14:07:32 Shorewall up triggered by lo
Aug 30 14:07:32 Shorewall up triggered by lo
Aug 30 14:07:32 Shorewall up triggered by --all
Aug 30 14:07:36 Processing /etc/shorewall/params ...
Aug 30 14:07:36 Processing /etc/shorewall/shorewall.conf...
Aug 30 14:07:36 Loading Modules...
---> Aug 30 14:07:37 ERROR: Log level INFO requires LOG Target in
your kernel and iptables
Aug 30 14:09:28 Shorewall up triggered by wlan0
Aug 30 14:09:28 up on interface wlan0 ignored
[...]
Trying to downgrade iptables to the previous version seems to fix the issue.
Oddly enough, the other box works perfectly even with the new version of
iptables, and shorewall6 doesn't seem affected on both boxes.
Do you have any hint?
Thanks
Maurizio