Package: shorewall
Version: 4.4.7.5-1
Severity: important

-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

shorewall-init.log is filled with options ipv6 disable=1 rows
18:03:53 Loading Modules...
Mar 27 18:03:53 Loading Modules...
options ipv6 disable=1
options ipv6 disable=1
options ipv6 disable=1
options ipv6 disable=1
options ipv6 disable=1
options ipv6 disable=1
options ipv6 disable=1
options ipv6 disable=1
options ipv6 disable=1
options ipv6 disable=1
options ipv6 disable=1
options ipv6 disable=1
options ipv6 disable=1
options ipv6 disable=1
options ipv6 disable=1
options ipv6 disable=1
options ipv6 disable=1
options ipv6 disable=1
options ipv6 disable=1
options ipv6 disable=1
options ipv6 disable=1
options ipv6 disable=1
options ipv6 disable=1
options ipv6 disable=1
options ipv6 disable=1
options ipv6 disable=1
options ipv6 disable=1
options ipv6 disable=1
options ipv6 disable=1
options ipv6 disable=1
options ipv6 disable=1
options ipv6 disable=1
options ipv6 disable=1
options ipv6 disable=1
options ipv6 disable=1
options ipv6 disable=1
options ipv6 disable=1
options ipv6 disable=1
options ipv6 disable=1
options ipv6 disable=1
options ipv6 disable=1
options ipv6 disable=1
options ipv6 disable=1
options ipv6 disable=1
options ipv6 disable=1
options ipv6 disable=1
options ipv6 disable=1
options ipv6 disable=1
options ipv6 disable=1
options ipv6 disable=1
options ipv6 disable=1
Shorewall has detected the following capabilities:
   Address Type Match: Available
   CLASSIFY Target: Available
   CONNMARK Target: Available
   Capability Version: 4.4.7

and it seems to have find a way in to the iptable rules to:
:POSTROUTING ACCEPT [2663:307197]
- -A FORWARD -j MARK options ipv6 disable=1
- --set-xmark 0x0/0xffffffff 
- -A FORWARD -p tcp -m tcp --sport 80 -j TOS --set-tos 0x08/0xff 
- -A FORWARD -p tcp -m tcp --dport 80 -j TOS --set-tos 0x08/0xff 

I don't know what is causing it, but ipv6 is disable via a
kernel parameter set in /etc/default/grub
GRUB_CMDLINE_LINUX_DEFAULT="ipv6.disable=1 quiet"

- -- System Information:
Debian Release: squeeze/sid
Architecture: amd64 (x86_64)

Kernel: Linux 2.6.32-4-amd64 (SMP w/2 CPU cores)
Locale: LANG=en_US.UTF-8, LC_CTYPE=sv_SE.UTF-8 (charmap=UTF-8)
Shell: /bin/sh linked to /bin/bash

Versions of packages shorewall depends on:
ii  bc                            1.06.95-2  The GNU bc arbitrary precision cal
ii  debconf [debconf-2.0]         1.5.30     Debian configuration management sy
ii  iproute                       20100224-3 networking and traffic control too
ii  iptables                      1.4.6-2    administration tools for packet fi
ii  perl-modules                  5.10.1-11  Core Perl modules

shorewall recommends no packages.

Versions of packages shorewall suggests:
ii  linux-image-2.6.32-3-amd64 [l 2.6.32-9   Linux 2.6.32 for 64-bit PCs
ii  linux-image-2.6.32-4-amd64 [l 2.6.32-10  Linux 2.6.32 for 64-bit PCs
ii  make                          3.81-8     An utility for Directing compilati
pn  shorewall-doc                 <none>     (no description available)

- -- debconf information:
  shorewall/invalid_config:
  shorewall/dont_restart:
  shorewall/major_release:

-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.10 (GNU/Linux)

iEYEARECAAYFAkuvjv0ACgkQw5UvgfnzqGqK/gCeN1pq8WQT1sjK7c1AmV3NvcHn
3TMAnRgY7Tiw74F4XSqB55da+uFjrwvz
=HfMy
-----END PGP SIGNATURE-----



-- 
To UNSUBSCRIBE, email to debian-bugs-dist-requ...@lists.debian.org
with a subject of "unsubscribe". Trouble? Contact listmas...@lists.debian.org

Reply via email to