[maverick] ipblock no longer works with maverick kernel/iptables

Bug #621636 reported by dino99
6
This bug affects 1 person
Affects Status Importance Assigned to Milestone
iptables (Ubuntu)
Invalid
Undecided
Jamie Strandboge

Bug Description

Binary package hint: iptables

into maverick we have iptables 1.4.4-2ubuntu3, which is outdated. Please update it to 1.4.9-1 from http://packages.debian.org/en/sid/iptables

ProblemType: Bug
DistroRelease: Ubuntu 10.10
Package: iptables 1.4.4-2ubuntu3
ProcVersionSignature: Ubuntu 2.6.35-17.23-generic-pae 2.6.35.2
Uname: Linux 2.6.35-17-generic-pae i686
NonfreeKernelModules: nvidia
Architecture: i386
Date: Sat Aug 21 09:51:05 2010
ProcEnviron:
 LANG=fr_FR.utf8
 SHELL=/bin/bash
SourcePackage: iptables

Revision history for this message
dino99 (9d9) wrote :
description: updated
Revision history for this message
dino99 (9d9) wrote :

trying to install it with gdebi, dpkg complaint and fail due to: cant read descriptors flags

Revision history for this message
dino99 (9d9) wrote :

since kernel 2.6.35-17 (generic-pae) i've found that i cant enable ipblock ( error: no running iplist instance found / failed to start, cleaning up) but i've no issue on previous kernels.
Googling around i've found this Debian comment:

http://translate.google.com/translate?js=y&prev=_t&hl=fr&ie=UTF-8&layout=1&eotf=1&u=http%3A%2F%2Fadsltele.free.fr%2Fiptableswebmin.php&sl=fr&tl=en

Revision history for this message
dino99 (9d9) wrote :

so now on maverick iptables (ipblock) fail to start with all the kernels, might be due to some packages updates since Friday 20 of August.
On Lucid it works as usual

Revision history for this message
dino99 (9d9) wrote :

bogon.gz is corrupted and ipblock cant be enabled because of it

http://georgia.ubuntuforums.org/showthread.php?t=530183&page=45

Revision history for this message
dino99 (9d9) wrote :

trojan.gz corrupted too

Revision history for this message
Jamie Strandboge (jdstrand) wrote :

We can't update iptables to what is currently in sid or squeeze without promoting libnfnetlink to main as iptables FTBFS without it.

Revision history for this message
Jamie Strandboge (jdstrand) wrote :

dino99: the reference you gave for the Debian comment does not describe the problem you are facing. Can you add the appropriate link for this discussion to this bug?

Changed in iptables (Ubuntu):
assignee: nobody → Jamie Strandboge (jdstrand)
status: New → Incomplete
summary: - outdated iptables package
+ [maverick] ipblock no longer works with maverick kernel/iptables
Revision history for this message
Jamie Strandboge (jdstrand) wrote :

So I looked at this a bit more and it appears that ipblock is not saving its files correctly. Eg:

$ ls -1 /var/cache/iplist/
ads-trackers-and-bad-pr0n.gz.php
allow.p2p
allow-perm.p2p
allow-temp.p2p
bogon.gz.php
edu.gz.php
level1.gz.php
spyware.gz.php

$ file /var/cache/iplist/level1.gz.php
/var/cache/iplist/level1.gz.php: gzip compressed data, was "level1.txt", from Unix, last modified: Tue Sep 14 08:45:58 2010

If I do the following, ipblock seems to work fine:
$ cd /var/cache/iplist
$ sudo rename 's/.php//' ./*php

I am going to mark this as invalid for now, as it seems to be a problem with ipblock. If this is in error, please re-open and give exact steps as to how to reproduce.

Changed in iptables (Ubuntu):
status: Incomplete → Invalid
To post a comment you must log in.
This report contains Public information  
Everyone can see this information.

Other bug subscribers

Remote bug watches

Bug watches keep track of this bug in other bug trackers.