Bug 27962
Summary: | initscript should reset all tables, not just filter | ||
---|---|---|---|
Product: | [Retired] Red Hat Linux | Reporter: | Ben Liblit <liblit> |
Component: | iptables | Assignee: | Bernhard Rosenkraenzer <bero> |
Status: | CLOSED RAWHIDE | QA Contact: | David Lawrence <dkl> |
Severity: | medium | Docs Contact: | |
Priority: | medium | ||
Version: | 7.1 | ||
Target Milestone: | --- | ||
Target Release: | --- | ||
Hardware: | i386 | ||
OS: | Linux | ||
Whiteboard: | |||
Fixed In Version: | Doc Type: | Bug Fix | |
Doc Text: | Story Points: | --- | |
Clone Of: | Environment: | ||
Last Closed: | 2001-02-24 01:44:07 UTC | Type: | --- |
Regression: | --- | Mount Type: | --- |
Documentation: | --- | CRM: | |
Verified Versions: | Category: | --- | |
oVirt Team: | --- | RHEL 7.3 requirements from Atomic Host: | |
Cloudforms Team: | --- | Target Upstream Version: | |
Embargoed: |
Description
Ben Liblit
2001-02-16 11:43:29 UTC
We (Red Hat) should really try to resolve this before next release. One suggestion on how to avoid hardcoding the list of chains for each table would be to parse the output of iptables -L if we're willing to rely on that.... The scripts seem to have been updated for wolverine. Now the scripts assume that the "filter", "nat", and "mangle" tables are always present. That's just as bad in the opposite direction. What if I don't have all of those tables in my kernel? What if I have some additional tables defined by locally created modules? The init scripts cannot hard wire a list of tables, period. They must discover the list of tables by looking at "/proc/net/ip_tables_names", as I suggested in my original bug report. This bug report is already tagged "fisher". Should I submit a new bug report against wolverine? Looks like bug #29104 already describes this new wolverine issue. Disregard my question about filing a new report. Fixed in 1.2.0-9 |