Package: iptables-persistent
Version: 1.0.3+deb8u1
Severity: normal

Dear Maintainer,

There was an error in my iptables rules, so `/etc/init.d/netfilter-persistent 
restart`
failed. It said:

[....] Restarting netfilter-persistent (via systemctl): 
netfilter-persistent.serviceJob for netfilter-persistent.service failed because 
the control process exited with error code. See "systemctl status 
netfilter-persistent.service" and "journalctl -xe" for details.
 failed!

Neither systemctl nor journalctl included an error message that explained
the problem.

Inspecting the code revealed that it discards error messages:

$ grep restore /usr/share/netfilter-persistent/plugins.d/*
/usr/share/netfilter-persistent/plugins.d/15-ip4tables:         
iptables-restore < /etc/iptables/rules.v4 2> /dev/null
/usr/share/netfilter-persistent/plugins.d/25-ip6tables:         
ip6tables-restore < /etc/iptables/rules.v6 2> /dev/null

The error messages should instead be preserved, so that systemctl and/or
journalctl can present them to the user.

-- System Information:
Debian Release: 8.7
  APT prefers stable-updates
  APT policy: (500, 'stable-updates'), (500, 'stable')
Architecture: amd64 (x86_64)

Kernel: Linux 3.16.0-4-amd64 (SMP w/8 CPU cores)
Locale: LANG=C, LC_CTYPE=C.UTF-8 (charmap=UTF-8)
Shell: /bin/sh linked to /bin/dash
Init: systemd (via /run/systemd/system)

Versions of packages iptables-persistent depends on:
ii  debconf [debconf-2.0]  1.5.56
ii  iptables               1.4.21-2+b1
ii  netfilter-persistent   1.0.3+deb8u1

iptables-persistent recommends no packages.

iptables-persistent suggests no packages.

-- debconf information excluded

Reply via email to