Package: shorewall Version: 3.2.4-1 Severity: normal ... Setting up TOS... Rule "all all tcp - ftp 16" Added. Rule "all all tcp ftp - 16" Added. Rule "all all tcp ftp-data - 8" Added. Rule "all all tcp - ftp-data 8" Added. Setting up ECN... Setting up TC Rules... Setting up Traffic Control... u32 classifier Performance counters on input device check on Actions configured RTNETLINK answers: No such file or directory We have an error talking to the kernel ERROR: Command "tc filter add dev ppp0 parent ffff: protocol ip prio 50 u32 match ip src 0.0.0.0/0 police rate 400kbit burst 10k drop flowid :1" Failed Processing /etc/shorewall/stop ... IP Forwarding Enabled Processing /etc/shorewall/stopped ... /sbin/shorewall: line 780: 16682 Terminated $SHOREWALL_SHELL ${VARDIR}/.restart $debugging restart
This was working with the 2.6.17-2-xen-686 kernel. It might be related to bug #395971. /etc/shorewall/tcdevices: ppp0 400kbit 400kbit /etc/shorewall/tcrules: 1:F 0.0.0.0/0 0.0.0.0/0 icmp echo-request 1:F 0.0.0.0/0 0.0.0.0/0 icmp echo-reply 3 192.168.87.49 0.0.0.0/0 all /etc/shorewall/tcclasses: ppp0 1 full full 1 tcp-ack,tos-minimize-delay ppp0 2 9*full/10 9*full/10 2 default ppp0 3 8*full/10 8*full/10 2 -- System Information: Debian Release: testing/unstable APT prefers testing APT policy: (500, 'testing'), (50, 'unstable') Architecture: i386 (i686) Shell: /bin/sh linked to /bin/bash Kernel: Linux 2.6.18-1-xen-686 Locale: LANG=en_AU.UTF-8, LC_CTYPE=en_AU.UTF-8 (charmap=UTF-8) Versions of packages shorewall depends on: ii debconf [debconf-2.0] 1.5.6 Debian configuration management sy ii iproute 20061002-2 Professional tools to control the ii iptables 1.3.5.0debian1-1 Linux kernel 2.4+ iptables adminis Versions of packages shorewall recommends: ii wget 1.10.2-2 retrieves files from the web -- debconf information excluded -- To UNSUBSCRIBE, email to [EMAIL PROTECTED] with a subject of "unsubscribe". Trouble? Contact [EMAIL PROTECTED]