This shows in component mismatches (seed change landed)
nftables: libnftables-dev libnftables1 nftables
MIR: #1887187 (Fix Committed)
[Reverse-Depends: Rescued from nftables (Uploader: paelzer) (Uploader:
paelzer), Ubuntu.Jammy standard seed, nftables (Uploader: paelzer)]
It is only in jammy (
** Changed in: nftables (Ubuntu)
Status: Fix Committed => In Progress
** Changed in: nftables (Ubuntu)
Assignee: Steve Beattie (sbeattie) => (unassigned)
--
You received this bug notification because you are a member of Ubuntu
Bugs, which is subscribed to Ubuntu.
https://bugs.launchp
** Changed in: nftables (Ubuntu)
Status: In Progress => Fix Committed
--
You received this bug notification because you are a member of Ubuntu
Bugs, which is subscribed to Ubuntu.
https://bugs.launchpad.net/bugs/1887187
Title:
[MIR] nftables
To manage notifications about this bug go to
The seed change[1] is approved, we are just waiting for the jammy beta
block to be lifted to merge it.
1. https://code.launchpad.net/~alexmurray/ubuntu-seeds/+git/ubuntu-
seeds/+merge/417621
--
You received this bug notification because you are a member of Ubuntu
Bugs, which is subscribed to Ubu
** Merge proposal linked:
https://code.launchpad.net/~alexmurray/ubuntu-seeds/+git/ubuntu-seeds/+merge/417621
--
You received this bug notification because you are a member of Ubuntu
Bugs, which is subscribed to Ubuntu.
https://bugs.launchpad.net/bugs/1887187
Title:
[MIR] nftables
To mana
Ok, summarizing the change
Required:
#1 embedded source
=> Done: security said that is ok for them
#2 symbols tracking
=> Done: resolved and improved via bug 1965464
Recommended:
#3 some vague security concerns
=> Done: did not come up in the security review
#4 does not have a test suite that r
python distutils deprecation has been filed as a bug upstream at
https://bugzilla.netfilter.org/show_bug.cgi?id=1594
For the security review, while I did do some review while preparing the
MIR request, I supsect it is preferable for the submitter to not also be
the one to do the security review. A
I reviewed nftables 1.0.2-1ubuntu1 as checked into jammy. This shouldn't
be considered a full audit but rather a quick gauge of maintainability.
nftables is a replacement for iptables etc - it provides userspace tooling
to control the Netfilter packet classification system within the Linux
kernel
Thanks for the info Steve, glad to see progress on that.
If I might ask - what about the security review? I assume you have kind
of done that already before trying to suggest to promote it, but
formally security should state somewhere here that you have done your
usual checks.
Oh and finally this
For the required todos:
1) yes, the Ubuntu Security team is willing to maintain the embedded
code copies.
2) debian symbols tracking:
https://bugs.launchpad.net/ubuntu/+source/nftables/+bug/1965464
For the recommended todos, we will try to make progress on those.
Thanks!
--
You received this
Marking as incomplete to reflect that there were TODOs identified.
This is on security twice now:
- security review
- driving the case overall
** Changed in: nftables (Ubuntu)
Status: New => Incomplete
--
You received this bug notification because you are a member of Ubuntu
Bugs, which is
** Changed in: nftables (Ubuntu)
Status: Confirmed => New
--
You received this bug notification because you are a member of Ubuntu
Bugs, which is subscribed to Ubuntu.
https://bugs.launchpad.net/bugs/1887187
Title:
[MIR] nftables
To manage notifications about this bug go to:
https://bu
Review for Package: src:nftables
Author: @joalif
Reviewed-by: @slyon
[Summary]
nftables is the future CLI for firewalling which should be available on Ubuntu.
iptables CLI switched to using a nftables backend, but will probably still
exist for a while.
The package is looking good from a MIR perspe
** Changed in: nftables (Ubuntu)
Assignee: (unassigned) => Ioanna Alifieraki (joalif)
--
You received this bug notification because you are a member of Ubuntu
Bugs, which is subscribed to Ubuntu.
https://bugs.launchpad.net/bugs/1887187
Title:
[MIR] nftables
To manage notifications about
** Changed in: nftables (Ubuntu)
Assignee: Seth Arnold (seth-arnold) => (unassigned)
** Changed in: nftables (Ubuntu)
Status: Confirmed => New
--
You received this bug notification because you are a member of Ubuntu
Bugs, which is subscribed to Ubuntu.
https://bugs.launchpad.net/bugs
** Description changed:
-
[Availability]
* The package is already in universe and has been supported
by Ubuntu kernels since at least Ubuntu 18.04 LTS. It
builds and is supported on all Ubuntu architectures.
[Rationale]
* nftables is the future CLI and backend for firewalling
** Description changed:
[Availability]
- * The package is already in universe and has been supported by Ubuntu
- kernels since at least Ubuntu 18.04 LTS. It builds and is supported
- on all Ubuntu architectures.
+ * The package is already in universe and has been supported
+ by Ubuntu kern
** Description changed:
+
[Availability]
- * The package is present in universe and is built for all architectures.
+ * The package is already in universe and has been supported by Ubuntu
+ kernels since at least Ubuntu 18.04 LTS. It builds and is supported
+ on all Ubuntu architectures.
https://media.giphy.com/media/FoH28ucxZFJZu/giphy.gif
--
You received this bug notification because you are a member of Ubuntu
Bugs, which is subscribed to Ubuntu.
https://bugs.launchpad.net/bugs/1887187
Title:
[MIR] nftables
To manage notifications about this bug go to:
https://bugs.launchpa
Could we get this in time for the next LTS? Even the bionic kernel
supports nftables, and we missed this in focal too.
--
You received this bug notification because you are a member of Ubuntu
Bugs, which is subscribed to Ubuntu.
https://bugs.launchpad.net/bugs/1887187
Title:
[MIR] nftables
To
Status changed to 'Confirmed' because the bug affects multiple users.
** Changed in: nftables (Ubuntu)
Status: New => Confirmed
--
You received this bug notification because you are a member of Ubuntu
Bugs, which is subscribed to Ubuntu.
https://bugs.launchpad.net/bugs/1887187
Title:
[
Hi Xnox,
I think you misinterpreted the sarnold assignment as waiting for security
review.
It wasn't that far.
This was waiting for #4:
quoting
"... I think the MIR preparations will be done by the Security Team, who will
own nftables itself, too."
Only once that is done and fully opened it wil
In trello, there is no asignee to perform the security review.
Thus removing assignee.
@ Security Team, when and who can do security review of nftables? we are
overdue to seed nftables by default.
** Changed in: nftables (Ubuntu)
Importance: Undecided => Critical
** Changed in: nftables (Ubu
Ok rbalint, since it is incomplete we need to reflect that this is waiting on
someone.
Re-reading the discussion so far that someone is sarnold whom I assigning to
this bug for now.
** Changed in: nftables (Ubuntu)
Assignee: (unassigned) => Seth Arnold (seth-arnold)
--
You received this b
keep this MIR alive
--
You received this bug notification because you are a member of Ubuntu
Bugs, which is subscribed to Ubuntu.
https://bugs.launchpad.net/bugs/1887187
Title:
[MIR] nftables
To manage notifications about this bug go to:
https://bugs.launchpad.net/ubuntu/+source/nftables/+bug
** Changed in: nftables (Ubuntu)
Status: Expired => Incomplete
--
You received this bug notification because you are a member of Ubuntu
Bugs, which is subscribed to Ubuntu.
https://bugs.launchpad.net/bugs/1887187
Title:
[MIR] nftables
To manage notifications about this bug go to:
https
[Expired for nftables (Ubuntu) because there has been no activity for 60
days.]
** Changed in: nftables (Ubuntu)
Status: Incomplete => Expired
--
You received this bug notification because you are a member of Ubuntu
Bugs, which is subscribed to Ubuntu.
https://bugs.launchpad.net/bugs/1887
Assigned to sarnold for security then, re-open when you think it is
ready and the team actually has a chance to focus on it.
** Changed in: nftables (Ubuntu)
Status: New => Incomplete
--
You received this bug notification because you are a member of Ubuntu
Bugs, which is subscribed to Ubu
** Description changed:
[Availability]
* The package is present in universe and is built for all architectures.
[Rationale]
- * nftables is replacing iptables as the default CLI interface to
- interact with the Netfilter framework and to help that iptables is
- planned to Recommend:
@paelzer This is not planned for 20.10 because in the 20.10 cycle only the
iptables backend has been changed to nft.
I can't comment on the timing of this MIR because I think the MIR preparations
will be done by the Security Team, who will own nftables itself, too.
--
You received this bug noti
Thanks Seth, but since it is yet incomplete let us set the state to it.
That way we will see it in the incomplete list but know that we can't action
yet.
@RBalint - what is the schedule on this 21.04?
** Changed in: nftables (Ubuntu)
Status: Confirmed => Incomplete
--
You received this
(subscribing ubuntu-mir even though this isn't done yet, just in case
that was overlooked :)
--
You received this bug notification because you are a member of Ubuntu
Bugs, which is subscribed to Ubuntu.
https://bugs.launchpad.net/bugs/1887187
Title:
[MIR] nftables
To manage notifications abou
Status changed to 'Confirmed' because the bug affects multiple users.
** Changed in: nftables (Ubuntu)
Status: New => Confirmed
--
You received this bug notification because you are a member of Ubuntu
Bugs, which is subscribed to Ubuntu.
https://bugs.launchpad.net/bugs/1887187
Title:
[
** Tags added: id-5eab0494b1f7785110eb0898
--
You received this bug notification because you are a member of Ubuntu
Bugs, which is subscribed to Ubuntu.
https://bugs.launchpad.net/bugs/1887187
Title:
[MIR] nftables
To manage notifications about this bug go to:
https://bugs.launchpad.net/ubunt
34 matches
Mail list logo