On 8/15/2020 9:06 AM, Norman Henderson wrote: > Good morning, > I'm running Shorewall 5.2.3.4 which is current as per Ubuntu 20.04 > distribution. > > I have just installed xtables-addons which I had working on an earlier > system (Ubuntu 16.04, Shorewall 5.1.6). It seems there has been a change > from the maxmind country database to db-ip.com. > > After running xt_geoip_dl (the patched version that references db-ip) and > xt_geoip_build I get a series of files {country code}.iv4 and .iv6 in > /usr/share/xt_geoip/ So far so good. However, when I add to shorewall/rules: > Ping(ACCEPT) dirty:^[CA,US] $FW > and run shorewall check I get ERROR: GEOIPDIR (/usr/share/xt_geoip/LE) does > not exist /usr/share/shorewall/macro.Ping (line 9) > And indeed, there are no subdirectories LE and BE as there were before. >
Try to remove '/LE' from the 'GEOIPDIR' var in shorewall.conf. -- Matt Darfeuille <m...@shorewall.org> Shorewall Project Committee, one of four core members https://sourceforge.net/p/shorewall/mailman/message/36596609/ https://shorewall.org _______________________________________________ Shorewall-users mailing list Shorewall-users@lists.sourceforge.net https://lists.sourceforge.net/lists/listinfo/shorewall-users