Bug#504703: ERROR: Command /sbin/iptables -A smurfs -s tcpflags -j DROP Failed

2008-11-07 Thread Jan Rasche
-BEGIN PGP SIGNED MESSAGE-
Hash: SHA1


Hello Roberto,

Thanks for your fast reply!

Here comes the /etc/shorewall/interfaces from my notebook. ;-)

#
# Shorewall version 3.4 - Interfaces File
#
# For information about entries in this file, type man
shorewall-interfaces
#
# For additional information, see
# http://shorewall.net/Documentation.htm#Interfaces
#
###
#ZONE INTERFACE BROADCAST OPTIONS
net eth0192.168.168.63   tcpflags
net eth1192.168.1.255   tcpflags
net ppp0tcpflags
#LAST LINE -- ADD YOUR ENTRIES BEFORE THIS ONE -- DO NOT REMOVE

Best regards, Jan

- --
- --

Eigentlich bin ich ganz anders...
...nur komme ich so selten dazu.

* [http://en.wikipedia.org/wiki/Ödön_von_Horváth Ödön von Horváth]
-BEGIN PGP SIGNATURE-
Version: GnuPG v1.4.9 (GNU/Linux)
Comment: Using GnuPG with Mozilla - http://enigmail.mozdev.org

iEYEARECAAYFAkkUCMoACgkQZ4Vo3ep5lKS7WQCgr8kfCrC6zBwDogQgYTD6u92A
pE0AnAsvt/UsaobbfK9ypQLtg2cnB96W
=/mGB
-END PGP SIGNATURE-




--
To UNSUBSCRIBE, email to [EMAIL PROTECTED]
with a subject of unsubscribe. Trouble? Contact [EMAIL PROTECTED]



Bug#504703: ERROR: Command /sbin/iptables -A smurfs -s tcpflags -j DROP Failed

2008-11-06 Thread xcomm
Package: shorewall-common
Version: 4.0.14-3
Severity: grave
Justification: renders package unusable

shorewall start
Compiling...
Initializing...
Determining Zones...
   IPv4 Zones: net
   Firewall Zone: fw
Validating interfaces file...
Validating hosts file...
Pre-processing Actions...
   Pre-processing /usr/share/shorewall/action.Drop...
   Pre-processing /usr/share/shorewall/action.Reject...
Validating Policy file...
Determining Hosts in Zones...
   net Zone: eth0:0.0.0.0/0 eth1:0.0.0.0/0 ppp0:0.0.0.0/0
Deleting user chains...
Compiling /etc/shorewall/routestopped ...
Creating Interface Chains...
Compiling Common Rules
Compiling TCP Flags checking...
Compiling Kernel Route Filtering...
Compiling Martian Logging...
Compiling /etc/shorewall/rules...
Compiling Actions...
Compiling /usr/share/shorewall/action.Drop for Chain Drop...
Compiling /usr/share/shorewall/action.Reject for Chain Reject...
Compiling /etc/shorewall/policy...
Compiling Traffic Control Rules...
Compiling Rule Activation...
Compiling IP Forwarding...
Shorewall configuration compiled to /var/lib/shorewall/.start
Processing /etc/shorewall/params ...
Starting Shorewall
Initializing...
Processing /etc/shorewall/init ...
Clearing Traffic Control/QOS
Deleting user chains...
Processing /etc/shorewall/continue ...
Enabling Loopback and DNS Lookups
Creating Interface Chains...
Setting up SMURF control...
iptables v1.4.1.1: host/network `tcpflags' not found
Try `iptables -h' or 'iptables --help' for more information.
   ERROR: Command /sbin/iptables -A smurfs -s tcpflags -j DROP Failed
Processing /etc/shorewall/stop ...
Processing /etc/shorewall/stopped ...
Terminated


-- System Information:
Debian Release: lenny/sid
  APT prefers unstable
  APT policy: (900, 'unstable'), (600, 'testing'), (500, 'stable'), (1, 
'experimental')
Architecture: i386 (i686)

Kernel: Linux 2.6.26-1-686 (SMP w/2 CPU cores)
Locale: LANG=de_DE.UTF-8, LC_CTYPE=de_DE.UTF-8 (charmap=UTF-8)
Shell: /bin/sh linked to /bin/bash

Versions of packages shorewall-common depends on:
ii  dash  0.5.4-12   POSIX-compliant shell
ii  debconf   1.5.24 Debian configuration management sy
ii  iproute   20080725-2 networking and traffic control too
ii  iptables  1.4.1.1-4  administration tools for packet fi

shorewall-common recommends no packages.

Versions of packages shorewall-common suggests:
ii  linux-image-2.6.26-1-686 [lin 2.6.26-9   Linux 2.6.26 image on PPro/Celeron
ii  linux-image-2.6.26-1-amd64 [l 2.6.26-9   Linux 2.6.26 image on AMD64
ii  linux-image-2.6.26-1-xen-686  2.6.26-9   Linux 2.6.26 image on i686
ii  linux-image-2.6.26x1 [linux-i x1 Linux kernel binary image for vers
ii  make  3.81-5 The GNU version of the make util
ii  shorewall-doc 4.0.14-2   documentation for Shoreline Firewa

-- debconf-show failed



-- 
To UNSUBSCRIBE, email to [EMAIL PROTECTED]
with a subject of unsubscribe. Trouble? Contact [EMAIL PROTECTED]



Bug#504703: ERROR: Command /sbin/iptables -A smurfs -s tcpflags -j DROP Failed

2008-11-06 Thread Roberto C . Sánchez
severity 504703 minor
thanks

On Thu, Nov 06, 2008 at 12:42:59PM +0100, xcomm wrote:
 Creating Interface Chains...
 Setting up SMURF control...
 iptables v1.4.1.1: host/network `tcpflags' not found
 Try `iptables -h' or 'iptables --help' for more information.
ERROR: Command /sbin/iptables -A smurfs -s tcpflags -j DROP Failed
 Processing /etc/shorewall/stop ...
 Processing /etc/shorewall/stopped ...
 Terminated
 
Please send the contents of your /etc/shorewall/interfaces file.

Regards,

-Roberto

-- 
Roberto C. Sánchez
http://people.connexer.com/~roberto
http://www.connexer.com


signature.asc
Description: Digital signature