Gentoo Archives: gentoo-user

From: "Canek Peláez Valdés" <caneko@×××××.com>
To: gentoo-user@l.g.o
Subject: Re: [gentoo-user] systemd: "local system does not support BPF/cgroup based firewalling"
Date: Sat, 28 Oct 2017 18:21:44
Message-Id: CADPrc802w2xLW5wWrb-+curZacEXb4ei9k9R+wuqpiFeiCN2Yg@mail.gmail.com
In Reply to: [gentoo-user] systemd: "local system does not support BPF/cgroup based firewalling" by Nikos Chantziaras
1 Do you have CONFIG_CGROUP_BPF enabled?
2
3 Regards.
4
5 On Sat, Oct 28, 2017 at 1:03 PM, Nikos Chantziaras <realnc@×××××.com> wrote:
6
7 > I'm getting these at startup:
8 >
9 > systemd[1]: File /lib/systemd/system/systemd-journald.service:33
10 > configures an IP firewall (IPAddressDeny=any), but the local system does
11 > not support BPF/cgroup based firewalling.
12 > systemd[1]: Proceeding WITHOUT firewalling in effect!
13 > systemd[1]: File /lib/systemd/system/systemd-udevd.service:32 configures
14 > an IP firewall (IPAddressDeny=any), but the local system does not support
15 > BPF/cgroup based firewalling.
16 > systemd[1]: Proceeding WITHOUT firewalling in effect!
17 > systemd[1]: File /lib/systemd/system/systemd-logind.service:34 configures
18 > an IP firewall (IPAddressDeny=any), but the local system does not support
19 > BPF/cgroup based firewalling.
20 > systemd[1]: Proceeding WITHOUT firewalling in effect!
21 >
22 > What do I need to make this work? I found this:
23 >
24 > https://github.com/systemd/systemd/issues/7188
25 >
26 > But CONFIG_BPF_SYSCALL is enabled and I still get that message.
27 >
28 > This is on kernel 4.9.59 with systemd 235.
29 >
30 >
31 >
32
33
34 --
35 Dr. Canek Peláez Valdés
36 Profesor de Carrera Asociado C
37 Departamento de Matemáticas
38 Facultad de Ciencias
39 Universidad Nacional Autónoma de México

Replies

Subject Author
[gentoo-user] Re: systemd: "local system does not support BPF/cgroup based firewalling" Nikos Chantziaras <realnc@×××××.com>