[CentOS] Shorewall and the latest kernel problem

Thu Nov 12 15:46:11 UTC 2015
Marcelo Ricardo Leitner <marcelo.leitner at gmail.com>

Em 12-11-2015 11:12, Pete Geenhuizen escreveu:
> I just installed the latest kernel 2.6.32-573.8.1.el6.x86_64 and when I
> rebooted it shorewall (shorewall-4.5.4-1.el6.noarch) failed with the
> following error
>
> ERROR: a non-empty masq file requires NAT in your kernel and iptables
> /etc/shorewall/masq (line 15)
>
> Question is is this a problem in the kernel or is it a problem in
> Shorewall?
>
> Booting the previous kernel allowed shorewall to start normally.
>
> Any one else seen this error, if so what's the fix?

That points to something different in kernel. What is your 'previous' 
kernel? Sounds like the nat modules aren't being loaded, for some reason.

   Marcelo