Tom Eastep wrote:
> James Gray wrote:
> 
>> 1. Does this kernel compile look ok?  I was expecting the modules, but
>>     not with the "xt_" prefix.
> 
> Your kernel is probably okay. The netfilter team have been busily renaming
> many of the modules.
> 
>> 2. Do I need to recompile, or get a different version of, iptables?
> 
> At the very least, you need to recompile it against your new kernel. I
> recommend upgrading to 1.3.8 while you are at it. Note that the rebuilt
> iptables will likely *not* work with your current kernel.

Bummer.  I was really trying to keep this as close to distribution as 
possible.  Don't suppose anyone has the connmark patch for 2.6.9?  The 
problem I have is that we have (as a matter of policy) no compile tools 
on any production machines.  We build RPM's on dedicated build boxes, 
then push the RPM's out (keeping the modified sources and spec files 
under version and change control).

It's a fairly detailed process but one that stops us shooting ourselves 
in the foot.  *Sigh* it's going to be a late night :(

Tom - thanks for the pointers and prompt response.  I really appreciate 
it. :)

-- 
James

-------------------------------------------------------------------------
This SF.net email is sponsored by: Splunk Inc.
Still grepping through log files to find problems?  Stop.
Now Search log events and configuration files using AJAX and a browser.
Download your FREE copy of Splunk now >>  http://get.splunk.com/
_______________________________________________
Shorewall-users mailing list
[email protected]
https://lists.sourceforge.net/lists/listinfo/shorewall-users

Reply via email to