Description of problem: Shorewall IPv6 firewall does not start ERROR: Your kernel/iptables do not include state match support. No version of Shorewall will run on this system But this is working systemctl status shorewall.service shorewall.service - Shorewall IPv4 firewall Loaded: loaded (/usr/lib/systemd/system/shorewall.service; enabled) Active: active (exited) since Sun 2013-08-11 21:47:49 CDT; 1min 12s ago Version-Release number of selected component (if applicable): How reproducible: Always Steps to Reproduce: Clean install of Mageia-4-alpha1-LiveDVD-KDE4-x86_64-DVD.iso. Default runlevel: 3 Followed with: remove-unused-packages urpmi --downloader wget --auto --auto-update urpme --auto-orphans and reboot. 1. click up a terminal 2. su - root 3. systemctl restart shorewall6.service 4. journalctl | grep shorewall6 Reproducible: Steps to Reproduce:
CC: (none) => tmb
I confirm but get various messages in journal during different system starts : ERROR: No IP zones defined ERROR: UNTRACKED state requires Raw Table in your kernel and iptables ERROR: Your kernel/iptables do not include state match support. No version of Shorewall will run on this system Any of the above but only one per boot.
CC: (none) => zen25000
CC: (none) => oe
CC: (none) => junknospam
clean install Mageia-4-RC-x86_64-DVD.iso, updates, reboot. Still broke. # shorewall6 check Checking... Processing /etc/shorewall6/params ... Processing /etc/shorewall6/shorewall6.conf... Loading Modules... ERROR: Your kernel/iptables do not include state match support. No version of Shorewall will run on this system Hmm, don't tell that to my install. $ systemctl status shorewall shorewall.service - Shorewall IPv4 firewall Loaded: loaded (/usr/lib/systemd/system/shorewall.service; enabled) Active: active (exited) since Sun 2014-01-19 17:01:17 CST; 19min ago Process: 1740 ExecStart=/sbin/shorewall $OPTIONS start (code=exited, status=0/SUCCESS) Main PID: 1740 (code=exited, status=0/SUCCESS) CGroup: /system.slice/shorewall.service
using a more commented one *** This bug has been marked as a duplicate of bug 11928 ***
Status: NEW => RESOLVEDResolution: (none) => DUPLICATE