Gentoo Forums
Gentoo Forums
Gentoo Forums
Quick Search: in
iptables issues after upgrade to gentoo-sources-2.20
View unanswered posts
View posts from last 24 hours

 
Reply to topic    Gentoo Forums Forum Index Other Things Gentoo
View previous topic :: View next topic  
Author Message
PaulSorensen
Tux's lil' helper
Tux's lil' helper


Joined: 15 Apr 2004
Posts: 80
Location: Chicago, USA

PostPosted: Wed Feb 07, 2007 9:52 pm    Post subject: iptables issues after upgrade to gentoo-sources-2.20 Reply with quote

I upgraded to the latest kernel today (and have the latest iptables tools version 1.3.7).

Now when I boot, I get the following errors when /etc/init.d/iptables tries to start:
Code:

 * Loading iptables state and starting firewall ...
FATAL: Module ip_tables not found.
iptables-restore v1.3.7: iptables-restore: unable to initializetable 'nat'

Error occurred at line: 2
Try `iptables-restore -h' or 'iptables-restore --help' for more information.


Now, I have ip_tables compiled into the kernel and the .config was created by applying "make oldconfig" to the previous kernel config (where iptables was fine).

Any ideas?

Thanks
Paul
Back to top
View user's profile Send private message
madisonicus
Veteran
Veteran


Joined: 20 Sep 2006
Posts: 1130

PostPosted: Wed Feb 07, 2007 11:41 pm    Post subject: Reply with quote

There were a bunch of additions to netfilter in the 2.6.20 kernel including a change to NAT support. Might double check to be sure some of your options didn't move around.

HTH,
m
_________________
Please add [SOLVED] to your message title if you feel that your question has been answered.
------
Intel Q9300 Core2 Quad * Gigabyte GA-EP35C-DS3R
Samsung x360
AMD64 x2 4200+ * TF7050-M2 * HTPC
ZOTAC ION A-U Mini-ITX * HTPC
Back to top
View user's profile Send private message
Draco-LVNH
n00b
n00b


Joined: 07 Dec 2005
Posts: 30
Location: Mexico, Michoacan, Morelia

PostPosted: Thu Feb 08, 2007 5:45 am    Post subject: Reply with quote

i have some problems too, i use shorewall ( iptables interface ) and with 2.6.19 it was going all right, but when i updated to 2.6.20 ( gentoo-sources both ) iptables started to mark an error like the one on https://forums.gentoo.org/viewtopic-t-535674-highlight-chain+target+match.html, so i did what that forum says and it changed the error, now is another that i cannot find :? ... this is what happend...
Code:

[23:32] Ragnarok vhosts.d # Servicios.sh shorewall start
 * Starting firewall ...
iptables: Invalid argument
   ERROR: Command "/sbin/iptables -A FORWARD -m state --state ESTABLISHED,RELATED -j ACCEPT" Failed
iptables: Invalid argument
iptables: Invalid argument
/sbin/shorewall: line 529:  1474 Terminated              ${VARDIR}/.start $debugging start    [ !! ]


now i am just hopping to see a fix in bugs or portage
Back to top
View user's profile Send private message
gami
Apprentice
Apprentice


Joined: 02 Jun 2006
Posts: 297

PostPosted: Thu Feb 08, 2007 7:00 am    Post subject: Reply with quote

I had the same problem, too. Connection tracking was not fully enabled after upgrading with a 2.6.19 config file as a base. In menuconfig I checked all the visible related entries to no avail. However, looking at the raw /usr/src/linux/.config file I noticed that CONFIG_NF_CONNTRACK_IPV4 and CONFIG_NF_CONNTRACK_IPV6 (for those who need IP6) wasn't set. I edited the .config file and reran make menuconfig. This time the appropriate entries were visible and the kernel later built with connection tracking enabled. Look at this thread on the kernel mailing list for details and how pleased Linus is with the situation :)
Back to top
View user's profile Send private message
Draco-LVNH
n00b
n00b


Joined: 07 Dec 2005
Posts: 30
Location: Mexico, Michoacan, Morelia

PostPosted: Thu Feb 08, 2007 10:07 pm    Post subject: Reply with quote

Thank you very much, i have that disabled, so i turned it on for recompiling the Kernel a little more late
Back to top
View user's profile Send private message
Draco-LVNH
n00b
n00b


Joined: 07 Dec 2005
Posts: 30
Location: Mexico, Michoacan, Morelia

PostPosted: Thu Feb 08, 2007 10:24 pm    Post subject: Reply with quote

Thank you again, it worked... i just compiled the module, and now shorewall works again, have a good day
Back to top
View user's profile Send private message
Paczesiowa
Guru
Guru


Joined: 06 Mar 2006
Posts: 593
Location: Oborniki Śląskie, Poland

PostPosted: Fri Feb 09, 2007 5:08 pm    Post subject: Reply with quote

is it just me, or there is no layer7 option in kernel config? (I reemerged l7-filter afetr new kernel)
Back to top
View user's profile Send private message
PaulSorensen
Tux's lil' helper
Tux's lil' helper


Joined: 15 Apr 2004
Posts: 80
Location: Chicago, USA

PostPosted: Fri Feb 09, 2007 5:35 pm    Post subject: I'll give it a try Reply with quote

I'll give it a try tonight - and mark [SOLVED] if it works - thanks for the help!
Back to top
View user's profile Send private message
karafeka
Tux's lil' helper
Tux's lil' helper


Joined: 02 Aug 2004
Posts: 89

PostPosted: Sun Apr 01, 2007 3:21 pm    Post subject: Reply with quote

Paczesiowa wrote:
is it just me, or there is no layer7 option in kernel config? (I reemerged l7-filter afetr new kernel)


There is no support for l7-filter in 2.6.20 and 21, yet.
On l7-filter milling list is a patch, but it is not working.
Back to top
View user's profile Send private message
tnt
Veteran
Veteran


Joined: 27 Feb 2004
Posts: 1222

PostPosted: Wed Apr 04, 2007 7:33 pm    Post subject: Reply with quote

I've made a userspace ebuild request:

https://bugs.gentoo.org/show_bug.cgi?id=173390
_________________
gentoo user
Back to top
View user's profile Send private message
jcat
Veteran
Veteran


Joined: 26 May 2006
Posts: 1337

PostPosted: Thu Jun 28, 2007 3:38 pm    Post subject: Reply with quote

Excellent. This sorted my issues as well! 8)



Cheers,
jcat
Back to top
View user's profile Send private message
Display posts from previous:   
Reply to topic    Gentoo Forums Forum Index Other Things Gentoo All times are GMT
Page 1 of 1

 
Jump to:  
You cannot post new topics in this forum
You cannot reply to topics in this forum
You cannot edit your posts in this forum
You cannot delete your posts in this forum
You cannot vote in polls in this forum