Bug#783270: shorewall: Triggers deprecation warning for automatic helper assignment

2016-11-04 Thread Roberto C . Sánchez
On Fri, Nov 04, 2016 at 12:09:05PM +, Dominic Hargreaves wrote:
> On Thu, Nov 03, 2016 at 11:13:48PM -0400, Roberto C. Sánchez wrote:
> > 
> > Do you have libnetfilter-cthelper0 installed?  If not, does installing
> > it cause the message to stop appearing?
> 
> No, and yes installing it does get rid of the messages (I don't quite
> understand why... :)
> 

I think that it is just over time some of the netfilter components have
moved to userland.  I have added libnetfilter-cthelper0 as a Recommends
(not a Depends, since it is just a warning after all).  It will be fixed
in the next upload.

Regards,

-Roberto
-- 
Roberto C. Sánchez
http://people.connexer.com/~roberto
http://www.connexer.com


signature.asc
Description: Digital signature


Bug#783270: shorewall: Triggers deprecation warning for automatic helper assignment

2016-11-04 Thread Dominic Hargreaves
On Thu, Nov 03, 2016 at 11:13:48PM -0400, Roberto C. Sánchez wrote:
> On Tue, Jul 12, 2016 at 09:24:26PM +0200, Dominic Hargreaves wrote:
> > On Sat, Jul 02, 2016 at 03:42:54PM -0400, Roberto C. Sánchez wrote:
> > > On Fri, Apr 24, 2015 at 10:33:11PM +0100, Dominic Hargreaves wrote:
> > > > Package: shorewall
> > > > Version: 4.6.4.3-2
> > > > Severity: normal
> > > > 
> > > > [note: I originally sent this on Tuesday but it doesn't seem to have
> > > > made it to the BTS; apologies if this somehow becomes a duplicate.]
> > > > 
> > > > When shorewall loads its rules it triggers the following kernel warning:
> > > > 
> > > > [  112.699592] nf_conntrack: automatic helper assignment is deprecated 
> > > > and it will be removed soon. Use the iptables CT target to attach 
> > > > helpers instead.
> > > > 
> > > > There are no odd rules relating to connection tracking in the shorewall
> > > > config.
> > > > 
> > > Hi Dominic,
> > > 
> > > I cannot seem to reproduce this behavior with the information you
> > > provided.  Could you confirm that you can stil reproduce this and
> > > perhaps provide your /etc/shorewall directory as a tarball?  Feel free
> > > to email it to me directly if you don't want to post it in a reply to
> > > the bug report.
> > 
> > The problem still occurs on systems with a minimimal config - but I don't
> > have a tarball to hand. The systems are jessie, so perhaps the issue is
> > fixed in sid (maybe even with a sid kernel the original version of
> > shorewall?)
> > 
> Hi Dominic,
> 
> Do you have libnetfilter-cthelper0 installed?  If not, does installing
> it cause the message to stop appearing?

No, and yes installing it does get rid of the messages (I don't quite
understand why... :)

Cheers,
Dominic.



Bug#783270: shorewall: Triggers deprecation warning for automatic helper assignment

2016-11-03 Thread Roberto C . Sánchez
On Tue, Jul 12, 2016 at 09:24:26PM +0200, Dominic Hargreaves wrote:
> On Sat, Jul 02, 2016 at 03:42:54PM -0400, Roberto C. Sánchez wrote:
> > On Fri, Apr 24, 2015 at 10:33:11PM +0100, Dominic Hargreaves wrote:
> > > Package: shorewall
> > > Version: 4.6.4.3-2
> > > Severity: normal
> > > 
> > > [note: I originally sent this on Tuesday but it doesn't seem to have
> > > made it to the BTS; apologies if this somehow becomes a duplicate.]
> > > 
> > > When shorewall loads its rules it triggers the following kernel warning:
> > > 
> > > [  112.699592] nf_conntrack: automatic helper assignment is deprecated 
> > > and it will be removed soon. Use the iptables CT target to attach helpers 
> > > instead.
> > > 
> > > There are no odd rules relating to connection tracking in the shorewall
> > > config.
> > > 
> > Hi Dominic,
> > 
> > I cannot seem to reproduce this behavior with the information you
> > provided.  Could you confirm that you can stil reproduce this and
> > perhaps provide your /etc/shorewall directory as a tarball?  Feel free
> > to email it to me directly if you don't want to post it in a reply to
> > the bug report.
> 
> The problem still occurs on systems with a minimimal config - but I don't
> have a tarball to hand. The systems are jessie, so perhaps the issue is
> fixed in sid (maybe even with a sid kernel the original version of
> shorewall?)
> 
Hi Dominic,

Do you have libnetfilter-cthelper0 installed?  If not, does installing
it cause the message to stop appearing?

Regards,

-Roberto

-- 
Roberto C. Sánchez
http://people.connexer.com/~roberto
http://www.connexer.com


signature.asc
Description: Digital signature


Bug#783270: shorewall: Triggers deprecation warning for automatic helper assignment

2016-07-12 Thread Roberto C . Sánchez
On Tue, Jul 12, 2016 at 09:24:26PM +0200, Dominic Hargreaves wrote:
> 
> The problem still occurs on systems with a minimimal config - but I don't
> have a tarball to hand. The systems are jessie, so perhaps the issue is
> fixed in sid (maybe even with a sid kernel the original version of
> shorewall?)
> 
Thanks for the additional information.  I'll try and set up a minimal
Jessie VM to recreate the problem.

Regards,

-Roberto

-- 
Roberto C. Sánchez
http://people.connexer.com/~roberto
http://www.connexer.com


signature.asc
Description: Digital signature


Bug#783270: shorewall: Triggers deprecation warning for automatic helper assignment

2016-07-12 Thread Dominic Hargreaves
On Sat, Jul 02, 2016 at 03:42:54PM -0400, Roberto C. Sánchez wrote:
> On Fri, Apr 24, 2015 at 10:33:11PM +0100, Dominic Hargreaves wrote:
> > Package: shorewall
> > Version: 4.6.4.3-2
> > Severity: normal
> > 
> > [note: I originally sent this on Tuesday but it doesn't seem to have
> > made it to the BTS; apologies if this somehow becomes a duplicate.]
> > 
> > When shorewall loads its rules it triggers the following kernel warning:
> > 
> > [  112.699592] nf_conntrack: automatic helper assignment is deprecated and 
> > it will be removed soon. Use the iptables CT target to attach helpers 
> > instead.
> > 
> > There are no odd rules relating to connection tracking in the shorewall
> > config.
> > 
> Hi Dominic,
> 
> I cannot seem to reproduce this behavior with the information you
> provided.  Could you confirm that you can stil reproduce this and
> perhaps provide your /etc/shorewall directory as a tarball?  Feel free
> to email it to me directly if you don't want to post it in a reply to
> the bug report.

The problem still occurs on systems with a minimimal config - but I don't
have a tarball to hand. The systems are jessie, so perhaps the issue is
fixed in sid (maybe even with a sid kernel the original version of
shorewall?)

Cheers,
Dominic.



Bug#783270: shorewall: Triggers deprecation warning for automatic helper assignment

2016-07-02 Thread Roberto C . Sánchez
On Fri, Apr 24, 2015 at 10:33:11PM +0100, Dominic Hargreaves wrote:
> Package: shorewall
> Version: 4.6.4.3-2
> Severity: normal
> 
> [note: I originally sent this on Tuesday but it doesn't seem to have
> made it to the BTS; apologies if this somehow becomes a duplicate.]
> 
> When shorewall loads its rules it triggers the following kernel warning:
> 
> [  112.699592] nf_conntrack: automatic helper assignment is deprecated and it 
> will be removed soon. Use the iptables CT target to attach helpers instead.
> 
> There are no odd rules relating to connection tracking in the shorewall
> config.
> 
Hi Dominic,

I cannot seem to reproduce this behavior with the information you
provided.  Could you confirm that you can stil reproduce this and
perhaps provide your /etc/shorewall directory as a tarball?  Feel free
to email it to me directly if you don't want to post it in a reply to
the bug report.

Regards,

-Roberto

-- 
Roberto C. Sánchez
http://people.connexer.com/~roberto
http://www.connexer.com


signature.asc
Description: Digital signature


Bug#783270: shorewall: Triggers deprecation warning for automatic helper assignment

2015-04-24 Thread Dominic Hargreaves
Package: shorewall
Version: 4.6.4.3-2
Severity: normal

[note: I originally sent this on Tuesday but it doesn't seem to have
made it to the BTS; apologies if this somehow becomes a duplicate.]

When shorewall loads its rules it triggers the following kernel warning:

[  112.699592] nf_conntrack: automatic helper assignment is deprecated and it 
will be removed soon. Use the iptables CT target to attach helpers instead.

There are no odd rules relating to connection tracking in the shorewall
config.

-- System Information:
Debian Release: 8.0
  APT prefers testing
  APT policy: (500, 'testing')
Architecture: amd64 (x86_64)

Kernel: Linux 3.16.0-4-amd64 (SMP w/1 CPU core)
Locale: LANG=en_GB.UTF-8, LC_CTYPE=en_GB.UTF-8 (charmap=UTF-8)
Shell: /bin/sh linked to /bin/dash
Init: sysvinit (via /sbin/init)

Versions of packages shorewall depends on:
ii  bc 1.06.95-9
ii  debconf [debconf-2.0]  1.5.56
ii  iproute2   3.16.0-2
ii  iptables   1.4.21-2+b1
ii  perl   5.20.2-3
ii  shorewall-core 4.6.4.3-2

shorewall recommends no packages.

Versions of packages shorewall suggests:
pn  make   none
pn  shorewall-doc  none

-- Configuration Files:
/etc/default/shorewall changed:
startup=1
OPTIONS=
STARTOPTIONS=
RESTARTOPTIONS=
INITLOG=/dev/null
SAFESTOP=0

/etc/shorewall/conntrack [Errno 13] Permission denied: 
u'/etc/shorewall/conntrack'
/etc/shorewall/params [Errno 13] Permission denied: u'/etc/shorewall/params'

-- debconf information:
  shorewall/dont_restart:
  shorewall/invalid_config:
  shorewall/major_release:


-- 
To UNSUBSCRIBE, email to debian-bugs-dist-requ...@lists.debian.org
with a subject of unsubscribe. Trouble? Contact listmas...@lists.debian.org