Bug #3173

Invalid traffic shaping rules after deleting host object

Added by Giacomo Sanchietti about 6 years ago. Updated about 6 years ago.

Status:CLOSEDStart date:
Priority:NormalDue date:
Assignee:-% Done:

100%

Category:nethserver-firewall-base
Target version:v6.6
Security class: Resolution:
Affected version:v6.6 NEEDINFO:No

Description

If a host firewall object referenced in a traffic shaping rule is deleted, the firewall configuration breaks with an error:

   ERROR: Invalid tcpri entry /etc/shorewall/tcpri (line 23)

Steps to reproduce:
1. create an host object
2. create a traffic shaping rule with the above host
3. delete the host
4. see the error

Temporary solution: disable the traffic shaping or re-create the deleted host..


Related issues

Related to NethServer 6 - Bug #3136: Invalid port forward after deleting firewall objects CLOSED

Associated revisions

Revision fbe93af5
Added by Giacomo Sanchietti about 6 years ago

system validator: check for used hosts inside traffic shaping rules. Refs #3137

Revision b4d244e1
Added by Giacomo Sanchietti over 5 years ago

host-delete validator: add fwobject-reference call. Refs #3173

Revision 00a4a195
Added by Giacomo Sanchietti over 5 years ago

Web UI: pass 'hosts' parameter to host-delete validator. Refs #3173

Revision 9b5ae991
Added by Giacomo Sanchietti over 5 years ago

Translation: add new label for host-delete validator. Refs #3173

Revision 8dbb0c42
Added by Giacomo Sanchietti over 5 years ago

host-delete validator: add fwobject-reference call. Refs #3173

Revision 5fff8fcb
Added by Giacomo Sanchietti over 5 years ago

Web UI: pass 'hosts' parameter to host-delete validator. Refs #3173

Revision 39b66eef
Added by Giacomo Sanchietti over 5 years ago

Translation: add new label for host-delete validator. Refs #3173

History

#1 Updated by Giacomo Sanchietti about 6 years ago

  • Status changed from NEW to TRIAGED
  • Target version set to v6.6
  • % Done changed from 0 to 20
  • Affected version set to v6.6

#2 Updated by Giacomo Sanchietti about 6 years ago

  • Related to Bug #3136: Invalid port forward after deleting firewall objects added

#3 Updated by Giacomo Sanchietti about 6 years ago

  • Status changed from TRIAGED to ON_DEV
  • Assignee set to Giacomo Sanchietti
  • % Done changed from 20 to 30

#4 Updated by Giacomo Sanchietti about 6 years ago

  • Status changed from ON_DEV to MODIFIED
  • % Done changed from 30 to 60

#5 Updated by Giacomo Sanchietti about 6 years ago

  • Status changed from MODIFIED to ON_QA
  • Assignee deleted (Giacomo Sanchietti)
  • % Done changed from 60 to 70
Packages in nethserver-testing:
  • nethserver-firewall-base-2.6.1-1.1.gfbe93af.ns6.noarch.rpm
Test case
  • Check the bug is not reproducible

#6 Updated by Filippo Carletti about 6 years ago

  • Status changed from ON_QA to VERIFIED
  • % Done changed from 70 to 90

I can't delete the host object until I remove it from the traffic shaping rules:
The red error messages says:
The host is used by firewall rules

#7 Updated by Giacomo Sanchietti about 6 years ago

  • Status changed from VERIFIED to CLOSED
  • % Done changed from 90 to 100
Released in nethserver-updates:
  • nethserver-firewall-base-2.6.2-1.ns6.noarch.rpm

Also available in: Atom PDF