LinuxQuestions.org
Review your favorite Linux distribution.
Home Forums Tutorials Articles Register
Go Back   LinuxQuestions.org > Forums > Linux Forums > Linux - Distributions > Slackware
User Name
Password
Slackware This Forum is for the discussion of Slackware Linux.

Notices


View Poll Results: I reviewed this proposal, and I think:
Not a bad idea 15 42.86%
Bad idea 20 57.14%
Voters: 35. You may not vote on this poll

Reply
  Search this Thread
Old 12-22-2022, 01:36 AM   #61
marav
LQ Sage
 
Registered: Sep 2018
Location: Gironde
Distribution: Slackware
Posts: 5,396

Rep: Reputation: 4125Reputation: 4125Reputation: 4125Reputation: 4125Reputation: 4125Reputation: 4125Reputation: 4125Reputation: 4125Reputation: 4125Reputation: 4125Reputation: 4125

Code:
Thu Dec 22 03:40:55 UTC 2022
a/sysvinit-scripts-15.1-noarch-3.txz:  Rebuilt.
  rc.6: support an optional rc.firewall_shutdown script. Most firewall scripts
  don't need a formal shutdown, but in some cases it can be useful. If your
  rc.firewall script supports a stop parameter, the shutdown script should just
  contain "/etc/rc.d/rc.firewall stop", or rc.firewall_shutdown could also be
  a symlink to the rc.firewall script in that case. But how the script works
  is (like the rc.firewall script support) completely up to the admin.
  Thanks to metaed for the suggestion.
  Please note that contrary to the request, I placed this *after* the network
  is shut down to avoid removing firewall protection while the interfaces are
  still active. Whether it'll work in this place for metaed's (or anyone
  else's) needs, I'm not sure. It's a start. Feel free to weigh in on the LQ
  thread if you have any ideas for improvement, but the goal here is to keep
  this support as simple and flexible as possible.
 
3 members found this post helpful.
Old 12-22-2022, 11:15 AM   #62
metaed
Member
 
Registered: Apr 2022
Location: US
Distribution: Slackware64 15.0
Posts: 369

Original Poster
Rep: Reputation: 172Reputation: 172
Quote:
Originally Posted by marav View Post
a/sysvinit-scripts-15.1-noarch-3.txz: Rebuilt. rc.6: support an optional rc.firewall_shutdown script.
This is a lovely and unexpected holiday gift. It's just what I wanted. Thank you! 💚 💚 💚

Here's the feedback that you asked for.

Running rc.firewall_shutdown so late is not advantageous for my package. I do not drop shields during shutdown. I only do housekeeping.

It has one disadvantage. The housekeeping step writes a file. With the network down, remote filesystems are down. My package will be incompatible with installations that have /var/lib on a remote filesystem.

This is why, for my purpose, the ideal startup order is: up network, read firewall rules, start daemons. The ideal shutdown order is exactly the reverse: stop daemons, write firewall rules, down network.

I will build in support for rc.firewall_shutdown for 15.1, and I'll handle remote /var/lib as a special case. Later, if you rethink the run order, I will remove the special case.

Again, thank you.
 
4 members found this post helpful.
  


Reply

Tags
firewall, init, nftables



Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is Off
HTML code is Off



Similar Threads
Thread Thread Starter Forum Replies Last Post
[SOLVED] Identifying a stop job running into timeout during shutdown JZL240I-U Linux - Software 20 07-06-2023 10:52 AM
[SOLVED] Why does this bash script work if called from the command line but not when called from a php script run by a webpage? KenHorse Linux - General 10 08-23-2021 05:39 AM
what is the default powerstate (e.g. S3,S4,S5) for the command 'shutdown -hP' or 'shutdown -hH' or 'shutdown -h' badbetty Slackware 6 11-12-2017 12:18 AM
[SOLVED] Destructor called on objects in deque without it being called explicitly Snark1994 Programming 4 07-13-2011 08:05 AM
shutdown hang during eth0 shutdown kurtisw Linux - Networking 5 10-30-2003 02:49 PM

LinuxQuestions.org > Forums > Linux Forums > Linux - Distributions > Slackware

All times are GMT -5. The time now is 06:10 PM.

Main Menu
Advertisement
My LQ
Write for LQ
LinuxQuestions.org is looking for people interested in writing Editorials, Articles, Reviews, and more. If you'd like to contribute content, let us know.
Main Menu
Syndicate
RSS1  Latest Threads
RSS1  LQ News
Twitter: @linuxquestions
Open Source Consulting | Domain Registration