Your message dated Tue, 01 Jan 2013 18:47:53 +0000
with message-id <e1tq6st-0002em...@franck.debian.org>
and subject line Bug#684863: fixed in libnfnetlink 1.0.0-1.1
has caused the Debian Bug report #684863,
regarding conntrackd: Conntrackd fails to start. No dedicated link detected.
to be marked as done.

This means that you claim that the problem has been dealt with.
If this is not the case it is now your responsibility to reopen the
Bug report if necessary, and/or fix the problem forthwith.

(NB: If you are a system administrator and have no idea what this
message is talking about, this may indicate a serious mail system
misconfiguration somewhere. Please contact ow...@bugs.debian.org
immediately.)


-- 
684863: http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=684863
Debian Bug Tracking System
Contact ow...@bugs.debian.org with problems
--- Begin Message ---
Package: conntrackd
Version: 1:1.2.1-1
Severity: grave
Tags: upstream
Justification: renders package unusable

Triying to start conntrackd in daemon mode result on this:

[Thu Aug  9 14:14:23 2012] (pid=3819) [notice] -- starting in daemon mode --
[Thu Aug  9 14:14:23 2012] (pid=3819) [ERROR] no dedicated links available!
[Thu Aug  9 14:14:23 2012] (pid=3819) [ERROR] no dedicated links available!
[Thu Aug  9 14:14:23 2012] (pid=3819) [ERROR] no dedicated links available!
[Thu Aug  9 14:19:54 2012] (pid=3819) [notice] ---- shutdown received ----

I contacted netfilter list and they found a bug in libnfnetlink that strongly 
affects conntrackd.

Also, they said that conntrackd 1.2.1 has a bug in the commit operation solved 
in lastest versions.

The thread in netfilter mailing list: 
http://marc.info/?l=netfilter&m=134458290414850



-- System Information:
Debian Release: wheezy/sid
  APT prefers testing
  APT policy: (500, 'testing')
Architecture: amd64 (x86_64)

Kernel: Linux 3.2.0-3-amd64 (SMP w/16 CPU cores)
Locale: LANG=es_ES.UTF-8, LC_CTYPE=es_ES.UTF-8 (charmap=UTF-8)
Shell: /bin/sh linked to /bin/dash

Versions of packages conntrackd depends on:
ii  libc6                    2.13-33
ii  libnetfilter-conntrack3  1.0.1-1
ii  libnfnetlink0            1.0.0-1

conntrackd recommends no packages.

conntrackd suggests no packages.

-- Configuration Files:
/etc/conntrackd/conntrackd.conf changed:
Sync {
        Mode ALARM {
                RefreshTime 15
                CacheTimeout 180
        }
        Multicast {
                IPv4_address 225.0.0.50
                Group 3780
                IPv4_interface 172.16.0.2
                Interface eth8
                SndSocketBuffer 1249280
                RcvSocketBuffer 1249280
                Checksum on
        }
}
General {
        #
        # Number of buckets in the caches: hash table
        #
        HashSize 8192
        #
        # Maximum number of conntracks: 
        # it must be >= $ cat /proc/sys/net/ipv4/netfilter/ip_conntrack_max
        #
        HashLimit 65535
        #
        # Logfile: on (/var/log/conntrackd.log), off, or a filename
        # Default: off
        #
        LogFile on
        #
        # Syslog: on, off or a facility name (daemon (default) or local0..7)
        # Default: off
        #
        Syslog on
        #
        # Lockfile
        # 
        LockFile /var/lock/conntrackd.lock
        #
        # Unix socket configuration
        #
        UNIX {
                Path /var/run/conntrackd.sock
                Backlog 20
        }
        #
        # Netlink socket buffer size
        #
        SocketBufferSize 262142
        #
        # Increase the socket buffer up to maximun if required
        #
        SocketBufferSizeMaxGrown 655355
        #
        # Event filtering: This clause allows you to filter certain traffic,
        # There are currently three filter-sets: Protocol, Address and
        # State. The filter is attached to an action that can be: Accept or
        # Ignore. Thus, you can define the event filtering policy of the
        # filter-sets in positive or negative logic depending on your needs.
        #
        Filter {
                #
                # Accept only certain protocols: You may want to log the
                # state of flows depending on their layer 4 protocol.
                #
                Protocol Accept {
                        TCP
                }
                #
                # Ignore traffic for a certain set of IP's.
                #
                Address Ignore {
                        IPv4_address 127.0.0.1 # loopback
                        IPv4_address 172.16.0.1 # cluster link
                        IPv4_address 172.16.0.2 # cluster link
                        # [...]
                }
                #
                # Uncomment this line below if you want to filter by flow state.
                # The existing TCP states are: SYN_SENT, SYN_RECV, ESTABLISHED,
                # FIN_WAIT, CLOSE_WAIT, LAST_ACK, TIME_WAIT, CLOSED, LISTEN.
                #
                # State Accept {
                #       ESTABLISHED CLOSED TIME_WAIT CLOSE_WAIT for TCP
                # }
        }
}

/etc/default/conntrackd changed:
CONFIG=/etc/conntrackd/conntrackd.conf


-- no debconf information

--- End Message ---
--- Begin Message ---
Source: libnfnetlink
Source-Version: 1.0.0-1.1

We believe that the bug you reported is fixed in the latest version of
libnfnetlink, which is due to be installed in the Debian FTP archive.

A summary of the changes between this version and the previous one is
attached.

Thank you for reporting the bug, which will now be closed.  If you
have further comments please address them to 684...@bugs.debian.org,
and the maintainer will reopen the bug report if appropriate.

Debian distribution maintenance software
pp.
Christian Perrier <bubu...@debian.org> (supplier of updated libnfnetlink 
package)

(This message was generated automatically at their request; if you
believe that there is a problem with it please contact the archive
administrators by mailing ftpmas...@debian.org)


-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

Format: 1.8
Date: Tue, 01 Jan 2013 19:19:15 +0100
Source: libnfnetlink
Binary: libnfnetlink0 libnfnetlink0-dbg libnfnetlink-dev
Architecture: source i386
Version: 1.0.0-1.1
Distribution: unstable
Urgency: low
Maintainer: netfilter maintainers <netfilter-maintain...@ned.snow-crash.org>
Changed-By: Christian Perrier <bubu...@debian.org>
Description: 
 libnfnetlink-dev - Development files for libnfnetlink0
 libnfnetlink0 - Netfilter netlink library
 libnfnetlink0-dbg - Debugging symbols for libnfnetlink0
Closes: 684863
Changes: 
 libnfnetlink (1.0.0-1.1) unstable; urgency=low
 .
   [ David Prevot ]
   * Non-maintainer upload.
   * iftable: fix incomplete list of interfaces via nlif_query. RTM_GETLINK
     with NLM_F_DUMP returns a multi-part netlink message. The existing code
     only handled the first message of it, thus, ignoring the remaining
     interfaces. This causes a bug in conntrackd. Report 8b15e48 from upstream.
     (Closes: #684863).
Checksums-Sha1: 
 43e1eeeaf542bb2faa03a64e8ed6ebc6056b3193 1897 libnfnetlink_1.0.0-1.1.dsc
 06bd867037d7a6770db309bddafcec63b8abff68 3059 libnfnetlink_1.0.0-1.1.diff.gz
 ec57d2bf3de418a35ec2ba294561b11f0bb70158 14904 libnfnetlink0_1.0.0-1.1_i386.deb
 22f9f4dc22a8ff7a5b4de3cf77a4b70c71972820 24670 
libnfnetlink0-dbg_1.0.0-1.1_i386.deb
 34173d1970f421d2e4261d400cbd6439220a32b9 21082 
libnfnetlink-dev_1.0.0-1.1_i386.deb
Checksums-Sha256: 
 fff98d05a4ba71773b4b2b08dd8513117a5101c79bb74df4ea6ac8ce9c878c29 1897 
libnfnetlink_1.0.0-1.1.dsc
 6cca666f871a7c0ad91971691c363933708ec26e454d12fcc3643d2d32ee9ffb 3059 
libnfnetlink_1.0.0-1.1.diff.gz
 b3f2d07957fefa89a88852b15eca6a4d88b6c4bdd47fa2362a9853f91d5534c4 14904 
libnfnetlink0_1.0.0-1.1_i386.deb
 cf3d707b0caaebd1e4eedf7ca2797fbc90428c09c7a51a16272f6b3a94a7c22f 24670 
libnfnetlink0-dbg_1.0.0-1.1_i386.deb
 23441d94aed362adc79f8d495a6a92669993704457fe20e7aa6924081cb3ccb8 21082 
libnfnetlink-dev_1.0.0-1.1_i386.deb
Files: 
 1800aa31149fb2f22cd48516b6921096 1897 libs extra libnfnetlink_1.0.0-1.1.dsc
 ea3776e7b932bf0d588e30e5399c99ba 3059 libs extra libnfnetlink_1.0.0-1.1.diff.gz
 0673cad3f4bedc2a4fb4d725894fe8be 14904 libs extra 
libnfnetlink0_1.0.0-1.1_i386.deb
 494ca1f61f59c2eaa6d7ed1c62eb5063 24670 debug extra 
libnfnetlink0-dbg_1.0.0-1.1_i386.deb
 926d2f4ac10e6f078f4faed2c09b2d04 21082 libdevel extra 
libnfnetlink-dev_1.0.0-1.1_i386.deb

-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.12 (GNU/Linux)
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=c2lB
-----END PGP SIGNATURE-----

--- End Message ---

Reply via email to