On 11/12/2015 2:52 PM, pgeenhuizen wrote:
> I've been running shorewall-4.5.4-1 on Centos 6 for a few years without
> any major problem.  Today I installed the latest kernel update and
> shorewall failed to start with the following error.
>
> ERROR: a non-empty masq file requires NAT in your kernel and iptables
> /etc/shorewall/masq (line 15)
>
> I booted the previous kernel and shorewall started without incident.
>
> Question is, is this a pure Centos kernel issue, or does the EPEL
> shorewall rpm need to be re complied for this new kernel?
>
> I'd prefer to stick with the EPEL rpm, or should I upgrade to shorewall
> 5 if the problem has been solved in the new version?
>

With the new kernel, what is the output of:

        iptables -t nat -L -n -v

-Tom
-- 
Tom Eastep        \ When I die, I want to go like my Grandfather who
Shoreline,         \ died peacefully in his sleep. Not screaming like
Washington, USA     \ all of the passengers in his car
http://shorewall.net \________________________________________________

------------------------------------------------------------------------------
_______________________________________________
Shorewall-users mailing list
[email protected]
https://lists.sourceforge.net/lists/listinfo/shorewall-users

Reply via email to