Re: Shorewall need clear to work after reboot

Rodrigo Araujo <[email protected]> Tue, 13 Jan 2026 16:19:47 +0000
Newsgroups gmane.comp.security.shorewall
Message-ID <[email protected]>
--===============8142180747928095978==
Content-Type: multipart/alternative; boundary="=-TdHzVTngbBCaLq/0HFaY"

--=-TdHzVTngbBCaLq/0HFaY
Content-Type: text/plain; charset="UTF-8"
Content-Transfer-Encoding: quoted-printable

rcortes,

can you confirm if you have "STARTUP_ENABLED=3DYes" in
/etc/shorewall/shorewall.conf ?

Best regards.


On Tue, 2026-01-13 at 11:11 -0500, Robert K Coffman Jr. -Info From Data
Corp. wrote:
> =20
> Ok - what do the logs say after a reboot?=C2=A0 One potential issue that
> might cause this is the status of any interfaces that are required
> but not ready when shorewall starts.
> =20
> On 1/13/2026 9:52:47 AM, [email protected] wrote:
> =20
> >=20
> > Hi Robert,
> > =20
> >=20
> > =20
> > =20
> > I'm using systemcl=C2=A0
> > =20
> >=20
> > =20
> > =20
> > systemctl enable shorewall after install package.
> > =20
> >=20
> > =20
> > =20
> > Thx.
> > =20
> >=20
> > =20
> > =20
> > El 2026-01-13 10:30, Robert K Coffman Jr. -Info From Data Corp.
> > escribi=C3=B3:
> > =20
> > > =20
> > > =20
> > > How are you starting Shorewall after a reboot?
> > > =20
> > >=20
> > > =20
> > > =20
> > > On 1/13/2026 5:59:25 AM, rcortes--- via Shorewall-users wrote:
> > > =20
> > > > Hi Simon,=20
> > > >=20
> > > > i use shorewall from shorewall site reference, in this case
> > > > 5.1.12 from
> > > > https://shorewall.org/pub/shorewall/5.1/shorewall-5.1.12/=20
> > > > and 5.2.8 from
> > > > https://www.invoca.ch/pub/packages/shorewall/RPMS/ils-7/noarch/
> > > >=20
> > > > 5.1.12 or 5.1.10 start but dont work, need apply clear/start to
> > > > work.=20
> > > > 5.2.8-12 start but dont work nat/dnat/proxyarp=20
> > > >=20
> > > > Thx=20
> > > >=20
> > > > El 2026-01-13 04:56, Simon Matter escribi=C3=B3:=20
> > > >=20
> > > > > Hi,=20
> > > > >=20
> > > > >=20
> > > > > > Hello everyone!=20
> > > > > >=20
> > > > > > Somebody know why or how to fix shorewall for not need
> > > > > > clear and start=20
> > > > > > after reboot?=C2=A0 i have EL7 and shorewall 5.1.12, previously
> > > > > > working with=20
> > > > > > 5.1.10 and try with 5.2.8-12 but shorewall start but
> > > > > > nat/dnat/proxyarp=20
> > > > > > dont work.=20
> > > > >=20
> > > > > Seems that your shorewall start is not working properly. Are
> > > > > you using a=20
> > > > > shorewall package from epel? If so you could check the
> > > > > changelog to see=20
> > > > > who has packaged it and ask directly?=20
> > > > >=20
> > > > > Regards,=20
> > > > > Simon=20
> > > >=20
> > > >=20
> > > > _______________________________________________=20
> > > > Shorewall-users mailing list=20
> > > > [email protected]=20
> > > > https://lists.sourceforge.net/lists/listinfo/shorewall-users=20
> > >  --=20
> > > Robert K Coffman Jr.
> > > Info From Data Corp.
> > > 3307249000
> > > [email protected]
> > > =20
> > > =20
> > > =20
> > > _______________________________________________
> > > Shorewall-users mailing list
> > > [email protected]
> > > https://lists.sourceforge.net/lists/listinfo/shorewall-users
> > > =20
> > =20
> =20
> _______________________________________________
> Shorewall-users mailing list
> [email protected]
> https://lists.sourceforge.net/lists/listinfo/shorewall-users

--=-TdHzVTngbBCaLq/0HFaY
Content-Type: text/html; charset="utf-8"
Content-Transfer-Encoding: quoted-printable

<html><head>
   =20
  <style>pre,code,address {
  margin: 0px;
}
h1,h2,h3,h4,h5,h6 {
  margin-top: 0.2em;
  margin-bottom: 0.2em;
}
ol,ul {
  margin-top: 0em;
  margin-bottom: 0em;
}
blockquote {
  margin-top: 0em;
  margin-bottom: 0em;
}
</style></head>
  <body><div>rcortes,</div><div><br></div><div>can you confirm if you have =
"STARTUP_ENABLED=3DYes" in /etc/shorewall/shorewall.conf ?</div><div><br></=
div><div>Best regards.</div><div><br></div><div><br></div><div>On Tue, 2026=
-01-13 at 11:11 -0500, Robert K Coffman Jr. -Info From Data Corp. wrote:</d=
iv><blockquote type=3D"cite" style=3D"margin:0 0 0 .8ex; border-left:2px #7=
29fcf solid;padding-left:1ex"><div> </div><p>Ok - what do the logs say afte=
r a reboot?&nbsp; One potential issue that might cause this is the status o=
f any interfaces that are required but not ready when shorewall starts.</p>=
<div> </div><div class=3D"moz-cite-prefix">On 1/13/2026 9:52:47 AM, <a clas=
s=3D"moz-txt-link-abbreviated" href=3D"mailto:[email protected]">rcortes@edos=
.cl</a> wrote:<br> </div><div> <br></div><blockquote type=3D"cite" cite=3D"=
mid:[email protected]" style=3D"margin:0 0 0 .8ex; b=
order-left:2px #729fcf solid;padding-left:1ex"><div> <meta http-equiv=3D"Co=
ntent-Type" content=3D"text/html; charset=3DUTF-8"> </div><p>Hi Robert,</p>=
<div> </div><p><br> </p><div> </div><p>I'm using systemcl&nbsp;</p><div> </=
div><p><br> </p><div> </div><p>systemctl enable shorewall after install pac=
kage.</p><div> </div><p><br> </p><div> </div><p>Thx.</p><div> </div><p><br>=
 </p><div> </div><p id=3D"reply-intro">El 2026-01-13 10:30, Robert K Coffma=
n Jr. -Info From Data Corp. escribi=C3=B3:</p><div> <br></div><blockquote t=
ype=3D"cite" style=3D"margin:0 0 0 .8ex; border-left:2px #729fcf solid;padd=
ing-left:1ex"><div> </div><div id=3D"replybody1"> <p>How are you starting S=
horewall after a reboot?</p> <p><br> </p> <div class=3D"v1moz-cite-prefix">=
On 1/13/2026 5:59:25 AM, rcortes--- via Shorewall-users wrote:</div> <br><b=
lockquote type=3D"cite" style=3D"margin:0 0 0 .8ex; border-left:2px #729fcf=
 solid;padding-left:1ex"><div>Hi Simon, <br> <br> i use shorewall from shor=
ewall site reference, in this case 5.1.12 from <a class=3D"v1moz-txt-link-f=
reetext moz-txt-link-freetext" href=3D"https://shorewall.org/pub/shorewall/=
5.1/shorewall-5.1.12/" target=3D"_blank" rel=3D"noopener noreferrer" moz-do=
-not-send=3D"true">https://shorewall.org/pub/shorewall/5.1/shorewall-5.1.12=
/</a> <br> and 5.2.8 from <a class=3D"v1moz-txt-link-freetext moz-txt-link-=
freetext" href=3D"https://www.invoca.ch/pub/packages/shorewall/RPMS/ils-7/n=
oarch/" target=3D"_blank" rel=3D"noopener noreferrer" moz-do-not-send=3D"tr=
ue">https://www.invoca.ch/pub/packages/shorewall/RPMS/ils-7/noarch/</a> <br=
> <br> 5.1.12 or 5.1.10 start but dont work, need apply clear/start to work=
. <br> 5.2.8-12 start but dont work nat/dnat/proxyarp <br> <br> Thx <br> <b=
r> El 2026-01-13 04:56, Simon Matter escribi=C3=B3: <br> <br></div><blockqu=
ote type=3D"cite" style=3D"margin:0 0 0 .8ex; border-left:2px #729fcf solid=
;padding-left:1ex"><div>Hi, <br> <br> <br></div><blockquote type=3D"cite" s=
tyle=3D"margin:0 0 0 .8ex; border-left:2px #729fcf solid;padding-left:1ex">=
<div>Hello everyone! <br> <br> Somebody know why or how to fix shorewall fo=
r not need clear and start <br> after reboot?&nbsp; i have EL7 and shorewal=
l 5.1.12, previously working with <br> 5.1.10 and try with 5.2.8-12 but sho=
rewall start but nat/dnat/proxyarp <br> dont work. </div></blockquote><div>=
 <br> Seems that your shorewall start is not working properly. Are you usin=
g a <br> shorewall package from epel? If so you could check the changelog t=
o see <br> who has packaged it and ask directly? <br> <br> Regards, <br> Si=
mon </div></blockquote><div> <br> <br> ____________________________________=
___________ <br> Shorewall-users mailing list <br> <a class=3D"v1moz-txt-li=
nk-abbreviated moz-txt-link-freetext" href=3D"mailto:Shorewall-users@lists.=
sourceforge.net" rel=3D"noreferrer" moz-do-not-send=3D"true">Shorewall-user=
[email protected]</a> <br> <a class=3D"v1moz-txt-link-freetext moz-tx=
t-link-freetext" href=3D"https://lists.sourceforge.net/lists/listinfo/shore=
wall-users" target=3D"_blank" rel=3D"noopener noreferrer" moz-do-not-send=
=3D"true">https://lists.sourceforge.net/lists/listinfo/shorewall-users</a> =
</div></blockquote> <pre class=3D"v1moz-signature">--=20
Robert K Coffman Jr.
Info From Data Corp.
3307249000
<a class=3D"v1moz-txt-link-abbreviated moz-txt-link-freetext" href=3D"mailt=
o:[email protected]" rel=3D"noreferrer" moz-do-not-send=3D"true">sup=
[email protected]</a></pre> </div><div> <br> </div><div class=3D"pre" s=
tyle=3D"margin: 0; padding: 0; font-family: monospace">____________________=
___________________________<br> Shorewall-users mailing list<br> <a href=3D=
"mailto:[email protected]" moz-do-not-send=3D"true" cla=
ss=3D"moz-txt-link-freetext">[email protected]</a><br> =
<a href=3D"https://lists.sourceforge.net/lists/listinfo/shorewall-users" ta=
rget=3D"_blank" rel=3D"noopener noreferrer" moz-do-not-send=3D"true" class=
=3D"moz-txt-link-freetext">https://lists.sourceforge.net/lists/listinfo/sho=
rewall-users</a></div><div> </div></blockquote><div> </div></blockquote><di=
v> </div><pre><div>_______________________________________________<br></div=
></pre><pre><div>Shorewall-users mailing list<br></div></pre><pre><div><a h=
ref=3D"mailto:[email protected]">Shorewall-users@lists.=
sourceforge.net</a><br></div></pre><pre><div><a href=3D"https://lists.sourc=
eforge.net/lists/listinfo/shorewall-users">https://lists.sourceforge.net/li=
sts/listinfo/shorewall-users</a><br></div></pre><pre></pre></blockquote><di=
v><br></div><div><span></span></div></body></html>

--=-TdHzVTngbBCaLq/0HFaY--


--===============8142180747928095978==
Content-Type: text/plain; charset="us-ascii"
MIME-Version: 1.0
Content-Transfer-Encoding: 7bit
Content-Disposition: inline


--===============8142180747928095978==
Content-Type: text/plain; charset="us-ascii"
MIME-Version: 1.0
Content-Transfer-Encoding: 7bit
Content-Disposition: inline