Shorewall 5.0.4 Beta 1 is now available for testing. Problems Corrected:
1) There previously existed a slight possibility that starting both Shorewall and Shorewall6 simultaneously could lead to a failure such as this one: Dec 18 13:18:35 elmo.example.com shorewall6[1889]:Loading Modules... Dec 18 13:18:38 elmo.example.com shorewall6[1889]: Another app is currently holding the xtables lock. Perhaps you want to use the -w option? Dec 18 13:18:40 elmo.example.com shorewall6[1889]: ERROR: Cannot Create Mangle chain fooX2349 Dec 18 13:18:40 elmo.example.com systemd[1]: shorewall6.service: main process exited, code=exited, status=255/n/a That problem can no longer occur. New Features: 1) Shorewall Init is now supported on OpenWRT. 2) The IPTABLES and IP6TABLES actions in the rules and mangle files can now correctly handle logging targets (LOG, ULOG and NFLOG). Previously, an attempt to use these targets would result in an error similar to: ERROR: LOG requires a level 3) To further reduce the possibility of failures caused by Shorewall and Shorewall6 starting concurrently, a new WAIT_OPTION capability has been implemented. On systems with that capability, all 'iptables' and 'ip6tables' commands will use the --wait option. 4) The .214.service files have been removed and the .service files (with the exception of Debian) have been updated to use the network-pre.target. 5) Shorewall, Shorewall6, Shorewall-lite and Shorewall6-lite now install /etc/sysconfig/<product> files for specifying start/restart/reload options on those distributions that use /etc/sysconfig. Thank you for testing, -Tom -- Tom Eastep \ When I die, I want to go like my Grandfather who Shoreline, \ died peacefully in his sleep. Not screaming like Washington, USA \ all of the passengers in his car http://shorewall.net \________________________________________________ ------------------------------------------------------------------------------ _______________________________________________ Shorewall-users mailing list Shorewall-users@lists.sourceforge.net https://lists.sourceforge.net/lists/listinfo/shorewall-users