Re: [Shorewall-users] Shorewall not starting

2023-07-29 Thread Philip Le Riche via Shorewall-users
Many thanks Justin - systemctl enable shorewall fixed it. Nice to have such a simple solution! Thanks also Matt. At a glance I might be able to use [1] to get sshd and apache2 to start, but that's for tomorrow. (Yes, should have been /var/log/shorewall-init.log. Nothing added on booting until

Re: [Shorewall-users] Shorewall not starting

2023-07-29 Thread Justin Pryzby
On Sat, Jul 29, 2023 at 02:25:05PM +0100, Philip Le Riche via Shorewall-users wrote: > As before, this is running under Linux Mint (Ubuntu-based), and this time I > installed Shorewall from the standard repository for the distro (perhaps > that was my mistake?) It's failing to start on boot even t

Re: [Shorewall-users] Shorewall not starting

2023-07-29 Thread Matt Darfeuille
On 7/29/23 15:25, Philip Le Riche via Shorewall-users wrote: As before, this is running under Linux Mint (Ubuntu-based), and this time I installed Shorewall from the standard repository for the distro (perhaps that was my mistake?) It's failing to start on boot even though I have STARTUP_ENABLE

[Shorewall-users] Shorewall not starting

2023-07-29 Thread Philip Le Riche via Shorewall-users
Prompted by ending of 32 bit Linux support, I'm reimplementing a firewall I set up in around 2014 to protect a school network from arbitrary root-privilege actions by students on a bunch of Raspberry Pis. As before, this is running under Linux Mint (Ubuntu-based), and this time I installed Sho

[Shorewall-users] Shorewall not starting: Linux Mint 18.2 bug

2017-08-08 Thread Philip Le Riche
Sorted, after months of frustration. Installing Shorewall from the repository on Mint 18.2 fails to enable the systemd shorewall service. Fixed by typing: systemctl enable shorewall.service This may also apply to Ubuntu and Debian as Mint uses the Ubuntu repositories. Regards - Philip -

Re: [Shorewall-users] Shorewall not starting

2017-02-15 Thread Philip Le Riche
Finally got around to checking this out. systemctl is-enabled reported enabled for shorewall but not for shorewall-init. So I enabled it for shorewall-init, and when it still didn't start on boot I reenabled both, but still with no improvement. There's no sign (that I can see) of it failing on boo

Re: [Shorewall-users] Shorewall not starting

2017-01-25 Thread Philip Le Riche
Thanks Matt and Roberto - I'll try the systemctl commands next time I go into school (not until next week now). And it looks like I somehow didn't install shorewall-init at home - not sure why. Regards - Philip On 25/01/2017 17:30, Matt Darfeuille wrote: > On 1/25/2017 6:06 PM, Philip Le Riche wr

Re: [Shorewall-users] Shorewall not starting

2017-01-25 Thread Matt Darfeuille
On 1/25/2017 6:06 PM, Philip Le Riche wrote: > > I've checked that STARTUP_ENABLED=Yes is still in my shorewall.conf, and > though I'm not familiar with systemd, I've checked that > shorewall.service in /lib/systemd/system is the same between home and > school setups. However, at school I also see

Re: [Shorewall-users] Shorewall not starting

2017-01-25 Thread Roberto C . Sánchez
On Wed, Jan 25, 2017 at 05:06:38PM +, Philip Le Riche wrote: > I got my Shorewall installation (defending a school network from a > Raspberry Pi farm, with 3rd unfiltered Internet connection) working at > home on an equivalent network though with different network addresses, > and transferred

[Shorewall-users] Shorewall not starting

2017-01-25 Thread Philip Le Riche
I got my Shorewall installation (defending a school network from a Raspberry Pi farm, with 3rd unfiltered Internet connection) working at home on an equivalent network though with different network addresses, and transferred the config files to school. After correcting a couple of really stoopid

Re: [Shorewall-users] Shorewall not starting

2016-09-15 Thread Philip Le Riche
I've just popped in to the school and the systemctl enable shorewall did the trick. Three or four reboots later I thought I'd seen the last of the desktop crash, but then I was sorting out another problem - I have 16 DNAT rules but had only added 8 extra IP addresses to the source NIC. After addin

Re: [Shorewall-users] Shorewall not starting

2016-09-15 Thread Roberto C . Sánchez
On Thu, Sep 15, 2016 at 09:18:26AM +0100, Philip Le Riche wrote: >OK, thanks, so on this near-clone system, systemd is installed and >systemctl shows  shorewall as disabled. When next I can get to the live >system (probably next week) I'll repeat it there, and it sounds like it >sho

Re: [Shorewall-users] Shorewall not starting

2016-09-15 Thread Philip Le Riche
OK, thanks, so on this near-clone system, systemd is installed and systemctl shows shorewall as disabled. When next I can get to the live system (probably next week) I'll repeat it there, and it sounds like it should then start on boot. But does that explain why the desktop crashed when I enabled

Re: [Shorewall-users] Shorewall not starting

2016-09-14 Thread Roberto C . Sánchez
On Wed, Sep 14, 2016 at 10:40:37PM +0100, Philip Le Riche wrote: >It reports: >Philip-Desktop ~ # apt-cache policy shorewall >shorewall: >  Installed: 5.0.4-1 > That version of Shorewall had a packaging bug such that it wouldn't start on boot on systems running systemd. >I'm h

Re: [Shorewall-users] Shorewall not starting

2016-09-14 Thread Philip Le Riche
Ah, come to think of it I've got another Linux Mint system down here in a corner which I set up as far as I can tell identically but it doesn't have Shorewall configured or started as I don't have the requisite NICs and only have one network. It reports: Philip-Desktop ~ # apt-cache policy shorewa

Re: [Shorewall-users] Shorewall not starting

2016-09-14 Thread Roberto C . Sánchez
On Wed, Sep 14, 2016 at 09:31:12PM +0100, Philip Le Riche wrote: >I don't have immediate access to the system and can't easily get precise >subversion numbers  but it's running a freshly installed Linux Mint 18 and >Shorewall 5 as offered by the standard repository just a few weeks ago.

Re: [Shorewall-users] Shorewall not starting

2016-09-14 Thread Philip Le Riche
I don't have immediate access to the system and can't easily get precise subversion numbers but it's running a freshly installed Linux Mint 18 and Shorewall 5 as offered by the standard repository just a few weeks ago. I'm also running Apache2, Samba, isc-dhcp-server and openssh-server. I could be

Re: [Shorewall-users] Shorewall not starting

2016-09-14 Thread Roberto C . Sánchez
On Wed, Sep 14, 2016 at 04:27:15PM +0100, Philip Le Riche wrote: > > After a bit of googling I set startup=1 in /etc/default/shorewall and on > the next reboot following logon the desktop crashed before displaying > anything, dropping me into fallback mode. Now shorewall again doesn't > start on b

[Shorewall-users] Shorewall not starting

2016-09-14 Thread Philip Le Riche
We'd been running Shorewall successfully since a couple of years ago on the then current version of Linux Mint. I recently rebuilt the firewall on slightly less ancient hardware and with the latest Linux Mint and Shorewall, and now it doesn't start automatically. After a bit of googling I set star

Re: [Shorewall-users] Shorewall not starting on boot - eth0 not up yet

2014-11-20 Thread Tom Eastep
On 11/20/2014 3:38 AM, Philip Le Riche wrote: > On 11/20/2014 00:42 AM, Tom Eastep wrote: > > No -- but they are pretty obvious. Given the error message you are > seeing, something you are doing requires the IP address of eth0. Some > possibilities are: > > - You are calling f

Re: [Shorewall-users] Shorewall not starting on boot - eth0 not up yet

2014-11-20 Thread Philip Le Riche
On 11/20/2014 00:42 AM, Tom Eastep wrote: No -- but they are pretty obvious. Given the error message you are seeing, something you are doing requires the IP address of eth0. Some possibilities are: - You are calling find_first_interface_address() in your params file - You

Re: [Shorewall-users] Shorewall not starting on boot - eth0 not up yet

2014-11-19 Thread Tom Eastep
On 11/19/2014 3:12 AM, Philip Le Riche wrote: > Thanks Tom - it sounds like adding something like "required,wait=5" > would at least be a viable work-around. Yes. > > But reading between the lines, it seems you're saying that I could in > all likelihood sidestep the problem completely, just by s

Re: [Shorewall-users] Shorewall not starting on boot - eth0 not up yet

2014-11-19 Thread Philip Le Riche
Thanks Tom - it sounds like adding something like "required,wait=5" would at least be a viable work-around. But reading between the lines, it seems you're saying that I could in all likelihood sidestep the problem completely, just by specifying "optional" instead (I presume "required" is the defau

Re: [Shorewall-users] Shorewall not starting n boot - eth0 not up yet

2014-11-18 Thread Tom Eastep
On 11/18/2014 1:12 AM, Philip Le Riche wrote: > I'm using Shorewall to protect a school network from a classroom network > of Raspberry Pis, which are operated headless from school network PCs using > VNC or PuTTy. > > All was working fine, starting up successfully on boot until I did the > follo

Re: [Shorewall-users] Shorewall not starting on boot - eth0 not up yet

2014-11-18 Thread Philip Le Riche
wait_interface is null. Definitely sounds like worth a try. I've also been looking at IFUPDOWN in /etc/default/shorewall-init. Would you recommend that as well, or instead? Unfortunately I only get access to the firewall once a week, which will be tomorrow, so any other ideas will be very timely.

Re: [Shorewall-users] Shorewall not starting n boot - eth0 not up yet

2014-11-18 Thread Wayne S
At 11/18/2014 04:12 AM, Philip Le Riche wrote: >... >Shorewall is running under Linux Mint 16. > >It may be arguable whether the Shorewall (and sshd) init scripts are at >fault or whether the fault lies with networking startup, but it must be >an issue other people round here have hit. Is there a r

Re: [Shorewall-users] Shorewall not starting n boot - eth0 not up yet

2014-11-18 Thread Wayne S
At 11/18/2014 04:12 AM, Philip Le Riche wrote: >... >Shorewall is running under Linux Mint 16. > >It may be arguable whether the Shorewall (and sshd) init scripts are at >fault or whether the fault lies with networking startup, but it must be >an issue other people round here have hit. Is there a r

Re: [Shorewall-users] Shorewall not starting n boot - eth0 not up yet

2014-11-18 Thread Philip Le Riche
No, I believe it uses Upstart. - Philip On 18/11/2014 09:44, Artur Uszyński wrote: > Is Mint 16 using systemd ? > > -- > Artur > > W dniu 18.11.2014 o 10:12, Philip Le Riche pisze: >> I'm using Shorewall to protect a school network from a classroom network >> of Raspberry Pis, which are operated

Re: [Shorewall-users] Shorewall not starting n boot - eth0 not up yet

2014-11-18 Thread Artur Uszyński
Is Mint 16 using systemd ? -- Artur W dniu 18.11.2014 o 10:12, Philip Le Riche pisze: > I'm using Shorewall to protect a school network from a classroom network > of Raspberry Pis, which are operated headless from school network PCs using > VNC or PuTTy. > > All was working fine, starting up suc

[Shorewall-users] Shorewall not starting n boot - eth0 not up yet

2014-11-18 Thread Philip Le Riche
I'm using Shorewall to protect a school network from a classroom network of Raspberry Pis, which are operated headless from school network PCs using VNC or PuTTy. All was working fine, starting up successfully on boot until I did the following: Installed isc-dhcp-server to serve dhcp to guest Pis

Re: [Shorewall-users] Shorewall not starting on kernel 3.13

2014-03-17 Thread Tom Eastep
On 3/17/2014 3:34 PM, Kilburn Abrahams wrote: > Hi Tony > > Applied patch. No difference. 'shorewall debug restart' show same as before. > The error message should have been different and I want to see it. Thanks, -Tom -- Tom Eastep\ When I die, I want to go like my Grandfather who Sho

Re: [Shorewall-users] Shorewall not starting on kernel 3.13

2014-03-17 Thread Kilburn Abrahams
Hi Tony Applied patch. No difference. 'shorewall debug restart' show same as before. Thanks On 03/18/2014 08:07 AM, Tom Eastep wrote: > On 3/17/2014 1:56 PM, Kilburn Abrahams wrote: >> Hi Tony >> >> Here is a small extract. Yes it does >> >> SBox linux # shorewall show capabilities >> Shorewal

Re: [Shorewall-users] Shorewall not starting on kernel 3.13

2014-03-17 Thread Tom Eastep
On 3/17/2014 1:56 PM, Kilburn Abrahams wrote: > Hi Tony > > Here is a small extract. Yes it does > > SBox linux # shorewall show capabilities > Shorewall has detected the following iptables/netfilter capabilities: >ACCOUNT Target (ACCOUNT_TARGET): Not available >Address Type Match (ADDRTY

Re: [Shorewall-users] Shorewall not starting on kernel 3.13

2014-03-17 Thread Kilburn Abrahams
Hi Tony Here is a small extract. Yes it does SBox linux # shorewall show capabilities Shorewall has detected the following iptables/netfilter capabilities: ACCOUNT Target (ACCOUNT_TARGET): Not available Address Type Match (ADDRTYPE): Available Amanda Helper: Available Arptables JF: No

Re: [Shorewall-users] Shorewall not starting on kernel 3.13

2014-03-17 Thread Tom Eastep
On 3/17/2014 1:19 PM, Kilburn Abrahams wrote: > Hi Tony > > This is what I am getting. Is there something in the kernel that is not > compiled in. I compared and checked in it looks fine. > > Thanks > > SBox shorewall # shorewall debug start ... > Preparing iptables-restore input... > Running d

Re: [Shorewall-users] Shorewall not starting on kernel 3.13

2014-03-17 Thread Kilburn Abrahams
Hi Tony This is what I am getting. Is there something in the kernel that is not compiled in. I compared and checked in it looks fine. Thanks SBox shorewall # shorewall debug start Compiling... Processing /etc/shorewall/params ... Processing /etc/shorewall/shorewall.conf... Compiling /etc/shorewa

Re: [Shorewall-users] Shorewall not starting on kernel 3.13

2014-03-17 Thread Tom Eastep
On 3/17/2014 5:08 AM, Kilburn Abrahams wrote: > Hi all > > Rebuilt a server with kernel 3.13. Installed the same version of > shorewall 4.5.18 as a working server. Copied over shorewall configs. > Restarted shorewall and this happens. Googled and could not find > anything. Not sure how to solve th

[Shorewall-users] Shorewall not starting on kernel 3.13

2014-03-17 Thread Kilburn Abrahams
Hi all Rebuilt a server with kernel 3.13. Installed the same version of shorewall 4.5.18 as a working server. Copied over shorewall configs. Restarted shorewall and this happens. Googled and could not find anything. Not sure how to solve this. SBox shorewall # /etc/init.d/shorewall start * Cachi

Re: [Shorewall-users] Shorewall not starting correctly

2013-03-24 Thread Tom Eastep
On 03/24/2013 02:18 PM, Donald S. Doyle wrote: > On Ubuntu 12.10, accessing through Webmin, I am running v4.5.5.3. I can > manually start Shorewall by clicking the Start Firewall button, but it > does not start automatically. In the shorewall.conf file, I have > startup_enabled set to YES. Ed

Re: [Shorewall-users] Shorewall not starting correctly

2013-03-24 Thread Roberto C . Sánchez
Hi Donald, Have you set "startup=1" in /etc/default/shorewall (or /etc/default/shorewall6, as applicable)? Regards, -Roberto On Sun, Mar 24, 2013 at 05:28:25PM -0400, Donald S. Doyle wrote: >Hello, > >  > >Let’s try this again.  Compressed version of the trace file. > >  > >

Re: [Shorewall-users] Shorewall not starting correctly

2013-03-24 Thread Donald S. Doyle
Hello, Let's try this again. Compressed version of the trace file. Have a great day, Donald S. Doyle President G.E.M. Computer Consulting, LLC 317.250.4448 www.gemcc.com gem-logo CONFIDENTIALITY NOTICE The materials enclosed with this electronic tra

[Shorewall-users] Shorewall not starting correctly

2013-03-24 Thread Donald S. Doyle
Hello, On Ubuntu 12.10, accessing through Webmin, I am running v4.5.5.3. I can manually start Shorewall by clicking the Start Firewall button, but it does not start automatically. In the shorewall.conf file, I have startup_enabled set to YES. If I go to Bootup and Shutdown within Webmin, Sho