firehol 1.231-7 not compatible with iptables 1.3.6.0debian1-5ubuntu2

Bug #98981 reported by Lorenzo Taylor
4
Affects Status Importance Assigned to Milestone
firehol (Ubuntu)
Incomplete
Undecided
Johnathon

Bug Description

Binary package hint: firehol

If I install Firehol and configure it to start in /etc/default/firehol using the original configuration that came with the package, I get errors similar to the following when Firehol starts:

ERROR : # 12.
WHAT : A runtime command failed to execute (returned error 2).
SOURCE : line FIN of /etc/firehol/firehol.conf
COMMAND : /sbin/iptables -t filter -A out_world -m state '' --state RELATED -j ACCEPT
OUTPUT :

--------------------------------------------------------------------------------
ERROR : # 13.
WHAT : A runtime command failed to execute (returned error 2).
SOURCE : line FIN of /etc/firehol/firehol.conf
COMMAND : /sbin/iptables -t filter -A INPUT -m state '' --state RELATED -j ACCEPT
OUTPUT :

--------------------------------------------------------------------------------
ERROR : # 14.
WHAT : A runtime command failed to execute (returned error 2).
SOURCE : line FIN of /etc/firehol/firehol.conf
COMMAND : /sbin/iptables -t filter -A OUTPUT -m state '' --state RELATED -j ACCEPT
OUTPUT :

--------------------------------------------------------------------------------
ERROR : # 15.
WHAT : A runtime command failed to execute (returned error 2).
SOURCE : line FIN of /etc/firehol/firehol.conf
COMMAND : /sbin/iptables -t filter -A FORWARD -m state '' --state RELATED -j ACCEPT
OUTPUT :

It seems that Firehol is putting extra quote marks in the iptables command that are not compatible with the current version of iptables. Older versions of iptables seem to handle these quote marks with no trouble, but the version in Feisty is unable to handle them and causes these errors.

Revision history for this message
Johnathon (kirrus) wrote :

Hi, thanks for the report.

What version of ubuntu are you running?

Changed in firehol:
assignee: nobody → kirrus
status: Unconfirmed → Needs Info
Revision history for this message
Lorenzo Taylor (lorenzo.taylor) wrote : Re: [Bug 98981] Re: firehol 1.231-7 not compatible with iptables 1.3.6.0debian1-5ubuntu2

I am running Ubuntu Feisty. FireHOL worked fine on Edgy but it broke in Feisty.

HTH,
Lorenzo

I've always found anomalies to be very relaxing. It's a curse.
--Jadzia Dax: Star Trek Deep Space Nine (The Assignment)

Revision history for this message
Johnathon (kirrus) wrote :

Hi, nice quote.
This particular bug has already been reported and is a duplicate of bug #78017 and is being marked as such. Please feel free to report any other bugs you may find, and thanks for this report.
There is a couple of work-arounds listed in bug #78017, that you might want to look at.

To post a comment you must log in.
This report contains Public information  
Everyone can see this information.

Other bug subscribers

Remote bug watches

Bug watches keep track of this bug in other bug trackers.