Your message dated Wed, 08 Oct 2025 20:49:57 +0000
with message-id <[email protected]>
and subject line Bug#1117505: fixed in firewalld 2.3.1-3
has caused the Debian Bug report #1117505,
regarding firewalld: autopkgtest needs update for new version of nftables
to be marked as done.
This means that you claim that the problem has been dealt with.
If this is not the case it is now your responsibility to reopen the
Bug report if necessary, and/or fix the problem forthwith.
(NB: If you are a system administrator and have no idea what this
message is talking about, this may indicate a serious mail system
misconfiguration somewhere. Please contact [email protected]
immediately.)
--
1117505: https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=1117505
Debian Bug Tracking System
Contact [email protected] with problems
--- Begin Message ---
Source: firewalld
Version: 2.3.1-2
Severity: serious
X-Debbugs-CC: [email protected]
Tags: sid forky
User: [email protected]
Usertags: needs-update
Control: affects -1 src:nftables
Dear maintainer(s),
With a recent upload of nftables the autopkgtest of firewalld fails in
testing when that autopkgtest is run with the binary packages of
nftables from unstable. It passes when run with only packages from
testing. In tabular form:
pass fail
nftables from testing 1.1.5-2
firewalld from testing 2.3.1-2
all others from testing from testing
I copied some of the output at the bottom of this report.
Currently this regression is blocking the migration of nftables to
testing [1]. Of course, nftables shouldn't just break your autopkgtest
(or even worse, your package), but it seems to me that the change in
nftables was intended and your package needs to update to the new situation.
If this is a real problem in your package (and not only in your
autopkgtest), the right binary package(s) from nftables should really
add a versioned Breaks on the unfixed version of (one of your)
package(s). Note: the Breaks is nice even if the issue is only in the
autopkgtest as it helps the migration software to figure out the right
versions to combine in the tests.
More information about this bug and the reason for filing it can be found on
https://wiki.debian.org/ContinuousIntegration/RegressionEmailInformation
Paul
[1] https://qa.debian.org/excuses.php?package=nftables
https://ci.debian.net/data/autopkgtest/testing/amd64/f/firewalld/64961657/log.gz
2837s +++ /tmp/testsuite.dir/at-groups/211/stdout 2025-10-05
17:27:01.608000000 +0000
2837s @@ -1,6 +1,6 @@
2837s table inet firewalld {
2837s chain filter_FORWARD {
2837s -meta nfproto ipv6 fib saddr . mark oif missing drop
2837s +meta nfproto ipv6 fib saddr . mark check missing drop
2837s ct state established,related accept
2837s ct status dnat accept
2837s iifname "lo" accept
2837s 211. rpfilter.at:89: 211. rpfilter - loose-forward
(rpfilter.at:89): FAILED (rpfilter.at:101)
2837s 2837s 2837s autopkgtest [17:53:31]: test standard-tests
OpenPGP_signature.asc
Description: OpenPGP digital signature
--- End Message ---
--- Begin Message ---
Source: firewalld
Source-Version: 2.3.1-3
Done: Michael Biebl <[email protected]>
We believe that the bug you reported is fixed in the latest version of
firewalld, which is due to be installed in the Debian FTP archive.
A summary of the changes between this version and the previous one is
attached.
Thank you for reporting the bug, which will now be closed. If you
have further comments please address them to [email protected],
and the maintainer will reopen the bug report if appropriate.
Debian distribution maintenance software
pp.
Michael Biebl <[email protected]> (supplier of updated firewalld package)
(This message was generated automatically at their request; if you
believe that there is a problem with it please contact the archive
administrators by mailing [email protected])
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA512
Format: 1.8
Date: Wed, 08 Oct 2025 21:24:10 +0200
Source: firewalld
Architecture: source
Version: 2.3.1-3
Distribution: unstable
Urgency: medium
Maintainer: Utopia Maintenance Team
<[email protected]>
Changed-By: Michael Biebl <[email protected]>
Closes: 1117505
Changes:
firewalld (2.3.1-3) unstable; urgency=medium
.
[ Jeremy Sowden ]
* d/patches: add upstream commit to fix rpfilter tests with newer versions
of nftables (Closes: #1117505)
Checksums-Sha1:
33561c533beabfed61adf0c1dd6da57005c5c391 2477 firewalld_2.3.1-3.dsc
73689a8d9a79e06f2ee31246a033c10a6354613b 12160 firewalld_2.3.1-3.debian.tar.xz
abd59bf6004c736010be88a8b8bbb0d8334ded5a 6027
firewalld_2.3.1-3_source.buildinfo
Checksums-Sha256:
8a67da2ba2fdab5805dfb69e8c145e3ad1e19e1a109d8a4abda9067b5a95dd70 2477
firewalld_2.3.1-3.dsc
7b18bb776e679984ecccfa0a868b60dbfd4f4602d0d4c72d1ad0bc76d0cf86b4 12160
firewalld_2.3.1-3.debian.tar.xz
76f426f71cb3640595e55b2758c85a7d5f93d9d8e2fac5b16a5e760112945e1c 6027
firewalld_2.3.1-3_source.buildinfo
Files:
9962e8db2bc94c8129444b8431ecb931 2477 net optional firewalld_2.3.1-3.dsc
dc2aa61eb20c96d46ede3ec79c247b4a 12160 net optional
firewalld_2.3.1-3.debian.tar.xz
088d94f4ffef58181e1aaf8dfd7ce554 6027 net optional
firewalld_2.3.1-3_source.buildinfo
-----BEGIN PGP SIGNATURE-----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=N6lx
-----END PGP SIGNATURE-----
pgpnYoPTSv0WX.pgp
Description: PGP signature
--- End Message ---