Project

General

Profile

action #101950

open.qa document need update base latest opensuse release for trace/debug firewalld size:S

Added by coolgw 7 months ago. Updated 6 months ago.

Status:
Resolved
Priority:
Normal
Assignee:
Category:
Organisational
Target version:
Start date:
2021-11-05
Due date:
2021-11-26
% Done:

0%

Estimated time:
Difficulty:

Description

When i use opensuse leap 15.3, i found nft used instead of iptables, so if you using iptables -L -v you will get nothing.
So following debug description need update, better give correct guild for how to debug firewalld related command

http://open.qa/docs/#_multi_machine_tests_setup
iptables -L -v
As long as the SUT has access to external network, there should be a non-zero packet count in the forward chain between the br1 and external interface.

Acceptance criteria

  • AC1: Docs cover nftables backend for firewalld

Suggestions

  • Clarify docs to mention e.g. firewalld with nftables backend or iptables

History

#1 Updated by okurz 6 months ago

  • Category set to Organisational
  • Target version set to Ready

#2 Updated by cdywan 6 months ago

  • Subject changed from open.qa document need update base latest opensuse release for trace/debug firewalld to open.qa document need update base latest opensuse release for trace/debug firewalld size:S
  • Description updated (diff)
  • Status changed from New to Workable

#3 Updated by mkittler 6 months ago

  • Assignee set to mkittler

#4 Updated by mkittler 6 months ago

  • Status changed from Workable to In Progress

#5 Updated by openqa_review 6 months ago

  • Due date set to 2021-11-26

Setting due date based on mean cycle time of SUSE QE Tools

#6 Updated by mkittler 6 months ago

  • Status changed from In Progress to Feedback

The PR has been merged. Is it good enough? Note that it doesn't make sense to replicate the documentation of firewalld/nftables so I only put some links there (for further details).

#7 Updated by mkittler 6 months ago

  • Status changed from Feedback to Resolved

The documentation update was mentioned in the usual update mail on openqa@suse.de. Since I haven't received any feedback I'm resolving the ticket now. We can still reopen it if something is missing although I'm reluctant to reinvent the wheel and rather refer to upstream documentation of firewalld/nftables.

Also available in: Atom PDF