crowdsecurity/cs-firewall-bouncer

IPv6 enabled by default causes indifferent error message (no hint to missing IPv6 support)

olk opened this issue · 1 comments

olk commented

Hi, I'm using crowdsec-firewall-bouncer-nftables. I get errors in the log like:

time="25-11-2023 22:16:19" level=info msg="backend type : nftables"
time="25-11-2023 22:16:19" level=fatal msg="conn.Receive: netlink receive: operation not supported"

What are the required kernel options for crowdsec-firewall-bouncer-nftables?

olk commented

I found out, that IPv6 is enabled per default in the crowdsec-firewall-bouncer.yaml.
But I've completely disabled IPv6 in my kernel. I suggest you test for IPv6 and write out a specific warning/error message ...