Josef Karliak
2013-Mar-06 06:32 UTC
shorewall 4.5.13 on opensuse 12.2 X64 and --log-prefixIN= OUT in the log
Good morning, after distro updating I''ve some issues with shorewall. Shorewall works, but logging is a little bit reird : Mar 6 07:16:59 machine kernel: [27315.103013] --log-prefixIN= OUT=bond0 SRC=193.13.23.14 DST=191.11.3.8 LEN=55 TOS=0x00 PREC=0x00 TTL=64 ID=14270 DF PROTO=UDP SPT=52763 DPT=53 LEN=35 Anyway I had a fight with iptables. while starting shorewall I had an error: /usr/sbin/iptables -A fooX6898 -m geoip --src-cc US > /dev/null 2>&1 < /dev/null In the syslog I found : kernel: [ 1760.847378] iptables[10768]: segfault at 20001 ip 00007f6d6d793326 sp 00007fffc4e843d0 error 4 in libc-2.15.so[7f6d6d74d000+19b000] So there are two ways, that I do not accept - segfault of iptables or bad logging of shorewall. kernel : Linux antivir2 3.4.28-2.20-desktop #1 SMP PREEMPT Tue Jan 29 16:51:37 UTC 2013 (143156b) x86_64 x86_64 x86_64 GNU/Linux iptables: iptables-1.4.14-2.4.1.i58 shorewall: shorewall-4.5.13-89.1.noarch shorewall-core-4.5.13-89.1.noarch Any suggestions ? Thanks and best regards -- Ma domena pouziva zabezpeceni a kontrolu SPF (www.openspf.org) a DomainKeys/DKIM (with ADSP) . Pokud mate problemy s dorucenim emailu, zacnete pouzivat metody overeni puvody emailu zminene vyse. Dekuji. My domain use SPF (www.openspf.org) and DomainKeys/DKIM (with ADSP) policy and check. If you''ve problem with sending emails to me, start using email origin methods mentioned above. Thank you. ---------------------------------------------------------------- This message was sent using IMP, the Internet Messaging Program. ------------------------------------------------------------------------------ Symantec Endpoint Protection 12 positioned as A LEADER in The Forrester Wave(TM): Endpoint Security, Q1 2013 and "remains a good choice" in the endpoint security space. For insight on selecting the right partner to tackle endpoint security challenges, access the full report. http://p.sf.net/sfu/symantec-dev2dev
Josef Karliak
2013-Mar-06 07:22 UTC
Re: shorewall 4.5.13 on opensuse 12.2 X64 and --log-prefixIN= OUT in the log [SOLVED]
Good news everyone! All is OK - bug solved at https://bugzilla.novell.com/show_bug.cgi?id=789480 . And wrote by ME!!! I knew this is for me some similar :-/. Good day to everyone :) Cituji Josef Karliak <karliak@ajetaci.cz>:> Good morning, > after distro updating I''ve some issues with shorewall. Shorewall > works, but logging is a little bit reird : > Mar 6 07:16:59 machine kernel: [27315.103013] --log-prefixIN= > OUT=bond0 SRC=193.13.23.14 DST=191.11.3.8 LEN=55 TOS=0x00 PREC=0x00 > TTL=64 ID=14270 DF PROTO=UDP SPT=52763 DPT=53 LEN=35 > Anyway I had a fight with iptables. while starting shorewall I had > an error: > /usr/sbin/iptables -A fooX6898 -m geoip --src-cc US > /dev/null > 2>&1 < /dev/null > > In the syslog I found : > kernel: [ 1760.847378] iptables[10768]: segfault at 20001 ip > 00007f6d6d793326 sp 00007fffc4e843d0 error 4 in > libc-2.15.so[7f6d6d74d000+19b000] > > So there are two ways, that I do not accept - segfault of iptables > or bad logging of shorewall. > > kernel : > Linux antivir2 3.4.28-2.20-desktop #1 SMP PREEMPT Tue Jan 29 > 16:51:37 UTC 2013 (143156b) x86_64 x86_64 x86_64 GNU/Linux > > iptables: > iptables-1.4.14-2.4.1.i58 > > shorewall: > shorewall-4.5.13-89.1.noarch > shorewall-core-4.5.13-89.1.noarch > > Any suggestions ? > Thanks and best regards > > > -- > Ma domena pouziva zabezpeceni a kontrolu SPF (www.openspf.org) a > DomainKeys/DKIM (with ADSP) . Pokud mate problemy s dorucenim emailu, > zacnete pouzivat metody overeni puvody emailu zminene vyse. Dekuji. > My domain use SPF (www.openspf.org) and DomainKeys/DKIM (with ADSP) > policy and check. If you''ve problem with sending emails to me, start > using email origin methods mentioned above. Thank you. > > ---------------------------------------------------------------- > This message was sent using IMP, the Internet Messaging Program. > >-- Ma domena pouziva zabezpeceni a kontrolu SPF (www.openspf.org) a DomainKeys/DKIM (with ADSP) . Pokud mate problemy s dorucenim emailu, zacnete pouzivat metody overeni puvody emailu zminene vyse. Dekuji. My domain use SPF (www.openspf.org) and DomainKeys/DKIM (with ADSP) policy and check. If you''ve problem with sending emails to me, start using email origin methods mentioned above. Thank you. ---------------------------------------------------------------- This message was sent using IMP, the Internet Messaging Program. ------------------------------------------------------------------------------ Symantec Endpoint Protection 12 positioned as A LEADER in The Forrester Wave(TM): Endpoint Security, Q1 2013 and "remains a good choice" in the endpoint security space. For insight on selecting the right partner to tackle endpoint security challenges, access the full report. http://p.sf.net/sfu/symantec-dev2dev