Your message dated Mon, 30 Apr 2007 20:53:39 -0500
with message-id <[EMAIL PROTECTED]>
and subject line Bug#397372: shorewall: internal traffic shapping broken with 
2.6.18
has caused the attached Bug report to be marked as done.

This means that you claim that the problem has been dealt with.
If this is not the case it is now your responsibility to reopen the
Bug report if necessary, and/or fix the problem forthwith.

(NB: If you are a system administrator and have no idea what I am
talking about this indicates a serious mail system misconfiguration
somewhere.  Please contact me immediately.)

Debian bug tracking system administrator
(administrator, Debian Bugs database)

--- Begin Message ---
Package: shorewall
Version: 3.2.4-1
Severity: normal

...
Setting up TOS...
Rule "all all tcp - ftp 16"  Added.
Rule "all all tcp ftp - 16"  Added.
Rule "all all tcp ftp-data - 8"  Added.
Rule "all all tcp - ftp-data 8"  Added.
Setting up ECN...
Setting up TC Rules...
Setting up Traffic Control...
u32 classifier
    Performance counters on
    input device check on
    Actions configured
RTNETLINK answers: No such file or directory
We have an error talking to the kernel
   ERROR: Command "tc filter add dev ppp0 parent ffff: protocol ip prio 50 u32 
match ip src 0.0.0.0/0 police rate 400kbit burst 10k drop flowid :1" Failed
Processing /etc/shorewall/stop ...
IP Forwarding Enabled
Processing /etc/shorewall/stopped ...
/sbin/shorewall: line 780: 16682 Terminated              $SHOREWALL_SHELL 
${VARDIR}/.restart $debugging restart


This was working with the 2.6.17-2-xen-686 kernel. It might be related to bug
#395971.

/etc/shorewall/tcdevices:
ppp0            400kbit         400kbit

/etc/shorewall/tcrules:
1:F     0.0.0.0/0       0.0.0.0/0       icmp    echo-request
1:F     0.0.0.0/0       0.0.0.0/0       icmp    echo-reply
3       192.168.87.49   0.0.0.0/0       all

/etc/shorewall/tcclasses:
ppp0            1       full    full        1           
tcp-ack,tos-minimize-delay
ppp0            2       9*full/10 9*full/10 2           default
ppp0            3       8*full/10 8*full/10 2

-- System Information:
Debian Release: testing/unstable
  APT prefers testing
  APT policy: (500, 'testing'), (50, 'unstable')
Architecture: i386 (i686)
Shell:  /bin/sh linked to /bin/bash
Kernel: Linux 2.6.18-1-xen-686
Locale: LANG=en_AU.UTF-8, LC_CTYPE=en_AU.UTF-8 (charmap=UTF-8)

Versions of packages shorewall depends on:
ii  debconf [debconf-2.0]   1.5.6            Debian configuration management sy
ii  iproute                 20061002-2       Professional tools to control the 
ii  iptables                1.3.5.0debian1-1 Linux kernel 2.4+ iptables adminis

Versions of packages shorewall recommends:
ii  wget                          1.10.2-2   retrieves files from the web

-- debconf information excluded


--- End Message ---
--- Begin Message ---
Brian May wrote:
> Package: shorewall
> Version: 3.2.4-1
> Severity: normal
> 
> ...
> Setting up TOS...
> Rule "all all tcp - ftp 16"  Added.
> Rule "all all tcp ftp - 16"  Added.
> Rule "all all tcp ftp-data - 8"  Added.
> Rule "all all tcp - ftp-data 8"  Added.
> Setting up ECN...
> Setting up TC Rules...
> Setting up Traffic Control...
> u32 classifier
>     Performance counters on
>     input device check on
>     Actions configured
> RTNETLINK answers: No such file or directory
> We have an error talking to the kernel
>    ERROR: Command "tc filter add dev ppp0 parent ffff: protocol ip prio 50 
> u32 match ip src 0.0.0.0/0 police rate 400kbit burst 10k drop flowid :1" 
> Failed
> Processing /etc/shorewall/stop ...
> IP Forwarding Enabled
> Processing /etc/shorewall/stopped ...
> /sbin/shorewall: line 780: 16682 Terminated              $SHOREWALL_SHELL 
> ${VARDIR}/.restart $debugging restart
> 
> 
> This was working with the 2.6.17-2-xen-686 kernel. It might be related to bug
> #395971.
> 
> /etc/shorewall/tcdevices:
> ppp0          400kbit         400kbit
> 
> /etc/shorewall/tcrules:
> 1:F     0.0.0.0/0       0.0.0.0/0       icmp    echo-request
> 1:F     0.0.0.0/0       0.0.0.0/0       icmp    echo-reply
> 3     192.168.87.49   0.0.0.0/0       all
> 
> /etc/shorewall/tcclasses:
> ppp0            1       full    full        1           
> tcp-ack,tos-minimize-delay
> ppp0            2       9*full/10 9*full/10 2           default
> ppp0            3       8*full/10 8*full/10 2

The problem was in the kernel package and not in shorewall. The bug can
be considered closed.

-- l

--- End Message ---

Reply via email to