| Summary: | Shorewall6 support (shorewall.pm from drakx-net still has "# Deliberately not adding shorewall6 support here for now") | ||
|---|---|---|---|
| Product: | Mageia | Reporter: | Jybz <j.biernacki+mga> |
| Component: | RPM Packages | Assignee: | José Jorge <lists.jjorge> |
| Status: | RESOLVED FIXED | QA Contact: | |
| Severity: | normal | ||
| Priority: | Normal | CC: | lists.jjorge, marja11 |
| Version: | 6 | ||
| Target Milestone: | --- | ||
| Hardware: | All | ||
| OS: | Linux | ||
| URL: | gitweb.mageia.org/software/drakx-net/tree/lib/network/shorewall.pm | ||
| Whiteboard: | |||
| Source RPM: | shorewall drakx-net | CVE: | |
| Status comment: | |||
| Bug Depends on: | |||
| Bug Blocks: | 21417 | ||
|
Description
Jybz
2018-03-15 19:31:01 CET
Marja Van Waes
2018-03-17 10:06:42 CET
Summary:
Shorewall6 support =>
Shorewall6 support (shorewall.pm from drakx-net still has "# Deliberately not adding shorewall6 support here for now")
Jybz
2018-11-07 19:31:12 CET
Blocks:
(none) =>
21417 I agree this should be fixed, now that IPv6 is very used. I'll try to work on it, if no one else volunteers. In my personal use, I simply copy all shorewall4 files in shorewall6 directory, and it works as expected. Status:
NEW =>
ASSIGNED (In reply to J-B B from comment #0) > Whatever, I change the /etc/shorewall6/rules file, > instead of : > include rules.drakx > I have > include /etc/shorewall/rules.drakx > > I really think that we should enable the ipv6 support, some ISP start > sharing the IPv4 for their clients, (sorry, it is in french but funny : > https://www.numerama.com/tech/145703-free-peut-attribuer-la-meme-adresse-ip- > a-plusieurs-abonnes.html ) > > What is the position of Mageia with Ipv6 ? I thin kyour change is not enough to get a good IPv6 firewall : this two lines are needed to enable good IPv6 traffic ACCEPT net fw ipv6-icmp ACCEPT net lan ipv6-icmp We really need someone to work on this... (In reply to José Jorge from comment #2) > We really need someone to work on this... Well I tried. So now in Cauldron we have drakconf-13.20 and drakx-net-2.40 that allow a separate IPv6 firewall configuration. Please test, you can install this packages in MGA6 if you have no beta MGA7 system : drakconf-13.20-1.mga7.noarch drakconf-icons-13.20-1.mga7.noarch drakx-net-applet-2.40-1.mga7.noarch drakx-net-2.40-1.mga7.noarch drakx-net-text-2.40-1.mga7.noarch libdrakx-net-2.40-1.mga7.noarch Please reopen the bug if needed. Status:
ASSIGNED =>
RESOLVED |