Package: shorewall Version: 4.4.7.5-1 Severity: important -----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1
shorewall-init.log is filled with options ipv6 disable=1 rows 18:03:53 Loading Modules... Mar 27 18:03:53 Loading Modules... options ipv6 disable=1 options ipv6 disable=1 options ipv6 disable=1 options ipv6 disable=1 options ipv6 disable=1 options ipv6 disable=1 options ipv6 disable=1 options ipv6 disable=1 options ipv6 disable=1 options ipv6 disable=1 options ipv6 disable=1 options ipv6 disable=1 options ipv6 disable=1 options ipv6 disable=1 options ipv6 disable=1 options ipv6 disable=1 options ipv6 disable=1 options ipv6 disable=1 options ipv6 disable=1 options ipv6 disable=1 options ipv6 disable=1 options ipv6 disable=1 options ipv6 disable=1 options ipv6 disable=1 options ipv6 disable=1 options ipv6 disable=1 options ipv6 disable=1 options ipv6 disable=1 options ipv6 disable=1 options ipv6 disable=1 options ipv6 disable=1 options ipv6 disable=1 options ipv6 disable=1 options ipv6 disable=1 options ipv6 disable=1 options ipv6 disable=1 options ipv6 disable=1 options ipv6 disable=1 options ipv6 disable=1 options ipv6 disable=1 options ipv6 disable=1 options ipv6 disable=1 options ipv6 disable=1 options ipv6 disable=1 options ipv6 disable=1 options ipv6 disable=1 options ipv6 disable=1 options ipv6 disable=1 options ipv6 disable=1 options ipv6 disable=1 options ipv6 disable=1 Shorewall has detected the following capabilities: Address Type Match: Available CLASSIFY Target: Available CONNMARK Target: Available Capability Version: 4.4.7 and it seems to have find a way in to the iptable rules to: :POSTROUTING ACCEPT [2663:307197] - -A FORWARD -j MARK options ipv6 disable=1 - --set-xmark 0x0/0xffffffff - -A FORWARD -p tcp -m tcp --sport 80 -j TOS --set-tos 0x08/0xff - -A FORWARD -p tcp -m tcp --dport 80 -j TOS --set-tos 0x08/0xff I don't know what is causing it, but ipv6 is disable via a kernel parameter set in /etc/default/grub GRUB_CMDLINE_LINUX_DEFAULT="ipv6.disable=1 quiet" - -- System Information: Debian Release: squeeze/sid Architecture: amd64 (x86_64) Kernel: Linux 2.6.32-4-amd64 (SMP w/2 CPU cores) Locale: LANG=en_US.UTF-8, LC_CTYPE=sv_SE.UTF-8 (charmap=UTF-8) Shell: /bin/sh linked to /bin/bash Versions of packages shorewall depends on: ii bc 1.06.95-2 The GNU bc arbitrary precision cal ii debconf [debconf-2.0] 1.5.30 Debian configuration management sy ii iproute 20100224-3 networking and traffic control too ii iptables 1.4.6-2 administration tools for packet fi ii perl-modules 5.10.1-11 Core Perl modules shorewall recommends no packages. Versions of packages shorewall suggests: ii linux-image-2.6.32-3-amd64 [l 2.6.32-9 Linux 2.6.32 for 64-bit PCs ii linux-image-2.6.32-4-amd64 [l 2.6.32-10 Linux 2.6.32 for 64-bit PCs ii make 3.81-8 An utility for Directing compilati pn shorewall-doc <none> (no description available) - -- debconf information: shorewall/invalid_config: shorewall/dont_restart: shorewall/major_release: -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.4.10 (GNU/Linux) iEYEARECAAYFAkuvjv0ACgkQw5UvgfnzqGqK/gCeN1pq8WQT1sjK7c1AmV3NvcHn 3TMAnRgY7Tiw74F4XSqB55da+uFjrwvz =HfMy -----END PGP SIGNATURE----- -- To UNSUBSCRIBE, email to debian-bugs-dist-requ...@lists.debian.org with a subject of "unsubscribe". Trouble? Contact listmas...@lists.debian.org