[Spce-user] Unable to enable the firewall.

Chinye Nke chenlogi at gmail.com
Wed Aug 14 13:34:22 EDT 2024


Hi

I am unable to enable the firewall.

Using the default configuration in /etc/ngcp-config/config.yml, with
security.firewall.enable=yes, I am able to run 'ngcpcfg apply' with no
issues but when I run iptables-apply, i get the below error.

Error: target extension not found
iptables-save v1.8.9 (nf_tables): Parsing nftables rule failed
Perhaps iptables-save or your kernel needs to be upgraded.
Error: iptables support lacking from the kernel


When I run  iptables-nft --list, i get the below output with the same error
at the bottom.

Chain INPUT (policy ACCEPT)
target prot opt source destination
rtpengine  udp  --  anywhere anywhere


Chain FORWARD (policy ACCEPT)
target prot opt source destination


Chain OUTPUT (policy ACCEPT)

target prot opt source destination


Chain rtpengine (1 references)
target prot opt source  destination
Error: target extension not found
iptables v1.8.9 (nf_tables): Parsing nftables rule failed
Perhaps iptables or your kernel needs to be upgraded.


I am running mr12.4.1 on bookworm 12.6 with

iptables 1.8.9-2
netfilter-persistent 1.0.20
nftables 1.0.6-2+deb12u2


I would appreciate any assistance to resolve this
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://lists.sipwise.com/pipermail/spce-user_lists.sipwise.com/attachments/20240814/83e42d05/attachment.htm>


More information about the Spce-user mailing list