Re: [Fwbuilder-discussion] Missing top level element when compiling
Brought to you by:
mikehorn
From: Luc P. <pau...@gm...> - 2013-10-10 11:14:51
|
Hi Chris, I actually figure out the source of the problem. The problem was due that the checkbox "Top ruleset" of the cluster policy object wasn't check. Not sure why, but once I edit the policy object and check the "top ruleset" box, I recompile and all was good. -Luc -- !!!!! ( o o ) --------------oOO----(_)----OOo-------------- Luc Paulin | paulinster(at)gmail.com 2013/10/9 Chris Martin <ch...@ma...> > Hi Luc > > I just tried creating a cluster and it compiled OK. > I am using the Debian/Ubuntu build 5.1.0.3599 > I suspect that for some reason your firewall objects do not have Policy or > NAT tables. > On mine I cannot delete the tables from the firewalls. > I only put rules in the cluster tables, and I left the firewall tables > empty > > hope that helps > > > Cheers > > ---------------------------------------------------------- > Chris Martin > m: +61 419 812 371 > e: ch...@ma... > ---------------------------------------------------------- > > > > On 10 October 2013 00:48, Luc Paulin <pau...@gm...> wrote: > >> Hi Everyone, >> Has anyone have an idea as why I would be getting complain about missing >> top level NAT and Policy ruleset. It's a pair of linux firewall member of a >> cluster. >> >> Here's the output when I try to compile... >> >> >> Compiling rule sets for firewall: fw-csv >> fwb_ipt -v -f /usr/local/touchtunes/fwbuilder/ttfirewalls.fwb -d >> /usr/local/touchtunes/fwbuilder -O >> id49012X26026,fw-csv-01.fw,id49247X26026,fw-csv-02.fw -i id49373X26026 >> *** Loading data ... >> done >> >> >> Firewall fw-csv-01 member of cluster fw-csv >> *fw-csv-01::: warning: Missing top level NAT ruleset* >> * >> * >> *fw-csv-01::: warning: Missing top level Policy ruleset* >> >> Compiling ruleset NAT for 'nat' table >> processing 1 rules >> rule 0 (NAT) >> Compiling ruleset Policy for 'mangle' table >> Compiling ruleset Policy for 'filter' table >> processing 6 rules >> rule 0 (eth0) >> rule 1 (lo) >> rule 2 (global) >> rule 3 (global) >> rule 4 (global) >> rule 5 (global) >> Output file name: fw-csv-01.fw >> Compiled successfully >> >> >> Firewall fw-csv-02 member of cluster fw-csv >> *fw-csv-02::: warning: Missing top level NAT ruleset* >> * >> * >> *fw-csv-02::: warning: Missing top level Policy ruleset* >> >> Compiling ruleset NAT for 'nat' table >> processing 1 rules >> rule 0 (NAT) >> Compiling ruleset Policy for 'mangle' table >> Compiling ruleset Policy for 'filter' table >> processing 6 rules >> rule 0 (eth0) >> rule 1 (lo) >> rule 2 (global) >> rule 3 (global) >> rule 4 (global) >> rule 5 (global) >> Output file name: fw-csv-02.fw >> Compiled successfully >> Compile time: >> 00:00:00 >> >> >> >> -- >> !!!!! >> ( o o ) >> --------------oOO----(_)----OOo-------------- >> Luc Paulin | paulinster(at)gmail.com >> >> >> >> ------------------------------------------------------------------------------ >> October Webinars: Code for Performance >> Free Intel webinars can help you accelerate application performance. >> Explore tips for MPI, OpenMP, advanced profiling, and more. Get the most >> from >> the latest Intel processors and coprocessors. See abstracts and register > >> >> http://pubads.g.doubleclick.net/gampad/clk?id=60134071&iu=/4140/ostg.clktrk >> _______________________________________________ >> Fwbuilder-discussion mailing list >> Fwb...@li... >> https://lists.sourceforge.net/lists/listinfo/fwbuilder-discussion >> >> > |