Page 1 of 1

[SOLVED]"Shorewall start fails" = no firewall in Mageia4?

PostPosted: Feb 3rd, '14, 21:16
by Trikki
I was just reading thru the errata of M4, and it says that "shorewall start fails - kernel/iptables do not include state match support". I also read the bug report (https://bugs.mageia.org/show_bug.cgi?id=11127), but as I have many times before understood things completely wrong, I would like to ask (just to make things clear): Does this mean that there is no firewall on Mageia4?

Does it mean that there is no (easy) way to turn firewall on, or that firewall can not be used at all (atleast at the moment)?

Re: "Shorewall start fails" = no firewall in Mageia4?

PostPosted: Feb 3rd, '14, 23:11
by doktor5000
Trikki wrote:Does this mean that there is no firewall on Mageia4?

Does it mean that there is no (easy) way to turn firewall on, or that firewall can not be used at all (atleast at the moment)?

No and no :)

Yes, there is a firewall. And yes there is an easy way to enable it.
See https://doc.mageia.org/mcc/4/en/content ... ewall.html

Re: "Shorewall start fails" = no firewall in Mageia4?

PostPosted: Feb 3rd, '14, 23:46
by Trikki
Ok, well it seem that it is very good that I asked: This seems like good news to me! I got the picture completely wrong...

But then what does "shorewall starts fails" mean? How does this bug affect the day to day use, if at all?

Re: "Shorewall start fails" = no firewall in Mageia4?

PostPosted: Feb 3rd, '14, 23:58
by doktor5000
Under some circumstances during testing of Mageia 4 beta/release candidates, shorewall would not start automatically sometimes.
I've asked for clarification in the bugreport.

Please mark the thread accordingly by editing the topic of the first post and prefix it by [SOLVED], thanks

Re: "Shorewall start fails" = no firewall in Mageia4?

PostPosted: Feb 4th, '14, 00:22
by Trikki
Thank you very much for the clarification!

I was afraid that this was similar to the shorewall-ipv6 bug that was in M3 (and still is? Atleast in my instals of M3 even at this moment shorewall-ipv6 "entered failed state"). But it seems even that is now fixed for M4 -> https://bugs.mageia.org/show_bug.cgi?id=11928.