iptables audit target causes kernel panic with iptables-persistent (kernel 3.2.78)

Paul Moore paul at paul-moore.com
Tue Apr 26 20:17:20 UTC 2016


On Tue, Apr 26, 2016 at 3:58 PM, Lev Stipakov <lstipakov at gmail.com> wrote:
> Yep, it works fine on Debian 8:
>
> lev at debi:~$ uname -a
> Linux debi 3.16.0-4-amd64 #1 SMP Debian 3.16.7-ckt20-1+deb8u3 (2016-01-17)
> x86_64 GNU/Linux

I would suggest bringing this up with the Debian kernel
packagers/maintainers, or doing a git-bisect of the Debian kernel if
you are comfortable with that sort of thing.

> On 26.04.2016 21:54, Paul Moore wrote:
>>>
>>>
>>> I cannot reproduce it on (one of) previous kernel version:
>>>
>>>    lev at debi7:~$ uname -a
>>>    Linux debi7 3.2.0-4-amd64 #1 SMP Debian 3.2.73-2+deb7u2 x86_64
>>> GNU/Linux
>>>
>>>    lev at debi7:~$ dpkg -l | grep iptables
>>>    ii  iptables                           1.4.14-3.1
>>>    ii  iptables-persistent                0.5.7+deb7u1
>>
>> Unfortunately I don't have a Debian system available to test, but have
>> you tried reproducing this on a more modern kernel?

-- 
paul moore
www.paul-moore.com




More information about the Linux-audit mailing list