Re: Shorewall need clear to work after reboot
rcortes--- via Shorewall-users <[email protected]> Tue, 13 Jan 2026 13:36:39 -0300
| Newsgroups | gmane.comp.security.shorewall |
|---|---|
| Message-ID | <[email protected]> |
--===============7127391713756832203== Content-Type: multipart/alternative; boundary="=_851576612546ebe226cc7d7a7b859cdd" --=_851576612546ebe226cc7d7a7b859cdd Content-Transfer-Encoding: 8bit Content-Type: text/plain; charset=UTF-8; format=flowed Hi Robert, Do you mean shorewall show log or other? Thx El 2026-01-13 13:11, Robert K Coffman Jr. -Info From Data Corp. escribió: > Ok - what do the logs say after a reboot? One potential issue that > might cause this is the status of any interfaces that are required but > not ready when shorewall starts. > > On 1/13/2026 9:52:47 AM, [email protected] wrote: > > Hi Robert, > > I'm using systemcl > > systemctl enable shorewall after install package. > > Thx. > > El 2026-01-13 10:30, Robert K Coffman Jr. -Info From Data Corp. > escribió: > > How are you starting Shorewall after a reboot? > > On 1/13/2026 5:59:25 AM, rcortes--- via Shorewall-users wrote: Hi > Simon, > > i use shorewall from shorewall site reference, in this case 5.1.12 from > https://shorewall.org/pub/shorewall/5.1/shorewall-5.1.12/ > and 5.2.8 from > https://www.invoca.ch/pub/packages/shorewall/RPMS/ils-7/noarch/ > > 5.1.12 or 5.1.10 start but dont work, need apply clear/start to work. > 5.2.8-12 start but dont work nat/dnat/proxyarp > > Thx > > El 2026-01-13 04:56, Simon Matter escribió: > Hi, > > Hello everyone! > > Somebody know why or how to fix shorewall for not need clear and start > after reboot? i have EL7 and shorewall 5.1.12, previously working with > 5.1.10 and try with 5.2.8-12 but shorewall start but nat/dnat/proxyarp > dont work. > Seems that your shorewall start is not working properly. Are you using > a > shorewall package from epel? If so you could check the changelog to see > who has packaged it and ask directly? > > Regards, > Simon _______________________________________________ Shorewall-users mailing list [email protected] https://lists.sourceforge.net/lists/listinfo/shorewall-users -- Robert K Coffman Jr. Info From Data Corp. 3307249000 [email protected] _______________________________________________ Shorewall-users mailing list [email protected] https://lists.sourceforge.net/lists/listinfo/shorewall-users -- Robert K Coffman Jr. Info From Data Corp. 3307249000 [email protected] _______________________________________________ Shorewall-users mailing list [email protected] https://lists.sourceforge.net/lists/listinfo/shorewall-users --=_851576612546ebe226cc7d7a7b859cdd Content-Transfer-Encoding: quoted-printable Content-Type: text/html; charset=UTF-8 <html><head><meta http-equiv=3D"Content-Type" content=3D"text/html; charset= =3DUTF-8" /></head><body style=3D'font-size: 10pt; font-family: Verdana,Gen= eva,sans-serif'> <p>Hi Robert,</p> <div id=3D"signature"></div> <p>Do you mean shorewall show log or other?</p> <p><br /></p> <p>Thx</p> <p><br /></p> <p id=3D"reply-intro">El 2026-01-13 13:11, Robert K Coffman Jr. -Info From = Data Corp. escribió:</p> <blockquote type=3D"cite" style=3D"padding: 0 0.4em; border-left: #1010ff 2= px solid; margin: 0"> <div id=3D"replybody1"> <p>Ok - what do the logs say after a reboot? One potential issue that= might cause this is the status of any interfaces that are required but not= ready when shorewall starts.</p> <div class=3D"v1moz-cite-prefix">On 1/13/2026 9:52:47 AM, <a class=3D"v1moz= -txt-link-abbreviated" href=3D"mailto:[email protected]" rel=3D"noreferrer">r= [email protected]</a> wrote:</div> <blockquote type=3D"cite" style=3D"padding: 0 0.4em; border-left: #1010ff 2= px solid; margin: 0"> <p>Hi Robert,</p> <p><br /></p> <p>I'm using systemcl </p> <p><br /></p> <p>systemctl enable shorewall after install package.</p> <p><br /></p> <p>Thx.</p> <p><br /></p> <p id=3D"v1reply-intro">El 2026-01-13 10:30, Robert K Coffman Jr. -Info Fro= m Data Corp. escribió:</p> <blockquote style=3D"padding: 0 0.4em; border-left: #1010ff 2px solid; marg= in: 0;"> <div id=3D"v1replybody1"> <p>How are you starting Shorewall after a reboot?</p> <p><br /></p> <div class=3D"v1v1moz-cite-prefix">On 1/13/2026 5:59:25 AM, rcortes--- via = Shorewall-users wrote:</div> <blockquote style=3D"padding: 0 0.4em; border-left: #1010ff 2px solid; marg= in: 0;">Hi Simon, <br /><br />i use shorewall from shorewall site reference= , in this case 5.1.12 from <a class=3D"v1v1moz-txt-link-freetext v1moz-txt-= link-freetext" href=3D"https://shorewall.org/pub/shorewall/5.1/shorewall-5.= 1.12/" target=3D"_blank" rel=3D"noopener noreferrer">https://shorewall.org/= pub/shorewall/5.1/shorewall-5.1.12/</a> <br />and 5.2.8 from <a class=3D"v1= v1moz-txt-link-freetext v1moz-txt-link-freetext" href=3D"https://www.invoca= =2Ech/pub/packages/shorewall/RPMS/ils-7/noarch/" target=3D"_blank" rel=3D"n= oopener noreferrer">https://www.invoca.ch/pub/packages/shorewall/RPMS/ils-7= /noarch/</a> <br /><br />5.1.12 or 5.1.10 start but dont work, need apply c= lear/start to work. <br />5.2.8-12 start but dont work nat/dnat/proxyarp <b= r /><br />Thx <br /><br />El 2026-01-13 04:56, Simon Matter escribió= : <br /> <blockquote style=3D"padding: 0 0.4em; border-left: #1010ff 2px solid; marg= in: 0;">Hi, <br /><br /> <blockquote style=3D"padding: 0 0.4em; border-left: #1010ff 2px solid; marg= in: 0;">Hello everyone! <br /><br />Somebody know why or how to fix shorewa= ll for not need clear and start <br />after reboot? i have EL7 and sh= orewall 5.1.12, previously working with <br />5.1.10 and try with 5.2.8-12 = but shorewall start but nat/dnat/proxyarp <br />dont work.</blockquote> <br />Seems that your shorewall start is not working properly. Are you usin= g a <br />shorewall package from epel? If so you could check the changelog = to see <br />who has packaged it and ask directly? <br /><br />Regards, <br= />Simon</blockquote> <br /><br />_______________________________________________ <br />Shorewall= -users mailing list <br /><a class=3D"v1v1moz-txt-link-abbreviated v1moz-tx= t-link-freetext" href=3D"mailto:[email protected]" rel= =3D"noreferrer">[email protected]</a> <br /><a class=3D= "v1v1moz-txt-link-freetext v1moz-txt-link-freetext" href=3D"https://lists.s= ourceforge.net/lists/listinfo/shorewall-users" target=3D"_blank" rel=3D"noo= pener noreferrer">https://lists.sourceforge.net/lists/listinfo/shorewall-us= ers</a></blockquote> <pre class=3D"v1v1moz-signature">--=20 Robert K Coffman Jr. Info From Data Corp. 3307249000 <a class=3D"v1v1moz-txt-link-abbreviated v1moz-txt-link-freetext" href=3D"m= ailto:[email protected]" rel=3D"noreferrer">[email protected]= </a></pre> </div> <br /> <div class=3D"v1pre" style=3D"margin: 0; padding: 0; font-family: monospace= ;">_______________________________________________<br />Shorewall-users mai= ling list<br /><a class=3D"v1moz-txt-link-freetext" href=3D"mailto:Shorewal= [email protected]" rel=3D"noreferrer">[email protected]= rceforge.net</a><br /><a class=3D"v1moz-txt-link-freetext" href=3D"https://= lists.sourceforge.net/lists/listinfo/shorewall-users" target=3D"_blank" rel= =3D"noopener noreferrer">https://lists.sourceforge.net/lists/listinfo/shore= wall-users</a></div> </blockquote> </blockquote> <pre class=3D"v1moz-signature">--=20 Robert K Coffman Jr. Info From Data Corp. 3307249000 <a class=3D"v1moz-txt-link-abbreviated" href=3D"mailto:support@infofromdata= =2Ecom" rel=3D"noreferrer">[email protected]</a></pre> </div> <br /> <div class=3D"pre" style=3D"margin: 0; padding: 0; font-family: monospace">= _______________________________________________<br />Shorewall-users mailin= g list<br /><a href=3D"mailto:[email protected]">Shorew= [email protected]</a><br /><a href=3D"https://lists.sourcefor= ge.net/lists/listinfo/shorewall-users" target=3D"_blank" rel=3D"noopener no= referrer">https://lists.sourceforge.net/lists/listinfo/shorewall-users</a><= /div> </blockquote> </body></html> --=_851576612546ebe226cc7d7a7b859cdd-- --===============7127391713756832203== Content-Type: text/plain; charset="us-ascii" MIME-Version: 1.0 Content-Transfer-Encoding: 7bit Content-Disposition: inline --===============7127391713756832203== Content-Type: text/plain; charset="us-ascii" MIME-Version: 1.0 Content-Transfer-Encoding: 7bit Content-Disposition: inline