Re: [Shorewall-devel] Shorewall 4.4.23 RC 2

2011-09-03 Thread Tom Eastep
On Sep 3, 2011, at 2:14 PM, Steven Jan Springl wrote: > > Confirmed, the patch has fixed the problem. > Thanks, Steven -Tom Tom Eastep\ When I die, I want to go like my Grandfather who Shoreline, \ died peacefully in his sleep. Not screaming like Washington, USA \ all of th

Re: [Shorewall-devel] Shorewall 4.4.23 RC 2

2011-09-03 Thread Steven Jan Springl
On Saturday 03 September 2011 21:51:44 Tom Eastep wrote: > On Sep 3, 2011, at 12:56 PM, Steven Jan Springl wrote: > > Using the attached minimal config. > > > > Issuing 'shorewall6 start' works. > > > > Issuing 'shorewall6 debug start' produces the following error messages: > > > > ip6tables: Bad b

Re: [Shorewall-devel] Shorewall 4.4.23 RC 2

2011-09-03 Thread Tom Eastep
On Sep 3, 2011, at 12:56 PM, Steven Jan Springl wrote: > Using the attached minimal config. > > Issuing 'shorewall6 start' works. > > Issuing 'shorewall6 debug start' produces the following error messages: > > ip6tables: Bad built-in chain name. > ERROR: Command "/usr/local/sbin/ip6tables :POSTR

Re: [Shorewall-devel] Shorewall 4.4.23 RC 2

2011-09-03 Thread Steven Jan Springl
Tom Using the attached minimal config. Issuing 'shorewall6 start' works. Issuing 'shorewall6 debug start' produces the following error messages: ip6tables: Bad built-in chain name. ERROR: Command "/usr/local/sbin/ip6tables :POSTROUTING ACCEPT [0:0]" Failed Steven. shorewall6.tar.gz Descript

Re: [Shorewall-devel] Shorewall 4.4.23 RC 2

2011-09-02 Thread Tom Eastep
On Sep 2, 2011, at 5:27 PM, Steven Jan Springl wrote: > > That's fixed the issue. Thanks, Steven I'll post a patch to netfilter-devel tomorrow. -Tom Tom Eastep\ When I die, I want to go like my Grandfather who Shoreline, \ died peacefully in his sleep. Not screaming like Wash

Re: [Shorewall-devel] Shorewall 4.4.23 RC 2

2011-09-02 Thread Steven Jan Springl
On Saturday 03 September 2011 01:10:35 Tom Eastep wrote: > On Sep 2, 2011, at 4:56 PM, Tom Eastep wrote: > > On Sep 2, 2011, at 4:08 PM, Steven Jan Springl wrote: > >> In the attahced config. secmarks contains: > >> > >> RESTORE O:ER - eth0 udp 53 > >> > >> When the following commands are issu

Re: [Shorewall-devel] Shorewall 4.4.23 RC 2

2011-09-02 Thread Tom Eastep
On Sep 2, 2011, at 4:56 PM, Tom Eastep wrote: > On Sep 2, 2011, at 4:08 PM, Steven Jan Springl wrote: >> In the attahced config. secmarks contains: >> >> RESTORE O:ER - eth0 udp 53 >> >> When the following commands are issued: >> >> shorewall start /etc/shorewallT6 >> shorewall safe-restar

Re: [Shorewall-devel] Shorewall 4.4.23 RC 2

2011-09-02 Thread Steven Jan Springl
On Saturday 03 September 2011 00:56:54 Tom Eastep wrote: > On Sep 2, 2011, at 4:08 PM, Steven Jan Springl wrote: > > Tom > > > > In the attahced config. secmarks contains: > > > > RESTORE O:ER - eth0 udp 53 > > > > When the following commands are issued: > > > > shorewall start /etc/shorewallT

Re: [Shorewall-devel] Shorewall 4.4.23 RC 2

2011-09-02 Thread Tom Eastep
On Sep 2, 2011, at 4:08 PM, Steven Jan Springl wrote: > Tom > > In the attahced config. secmarks contains: > > RESTORE O:ER - eth0 udp 53 > > When the following commands are issued: > > shorewall start /etc/shorewallT6 > shorewall safe-restart /etc/shorewallT6 > > then reply 'n' when pro

Re: [Shorewall-devel] Shorewall 4.4.23 RC 2

2011-09-02 Thread Steven Jan Springl
Tom In the attahced config. secmarks contains: RESTORE O:ER - eth0 udp 53 When the following commands are issued: shorewall start /etc/shorewallT6 shorewall safe-restart /etc/shorewallT6 then reply 'n' when prompted. The following iptables rule is generated in .safe-iptables: -A OUTPUT

[Shorewall-devel] Shorewall 4.4.23 RC 2

2011-09-02 Thread Tom Eastep
RC 2 is now available for testing (Early RC1 testing on a RedHat-based system with dynamic provider gateways uncovered a couple of debilitating defects in the enable/disable logic). Thank you for testing, -Tom -- Tom Eastep\ When I die, I want to go like my Grandfather who Shoreline,