diff options
author | Paul Holzinger <pholzing@redhat.com> | 2022-02-23 15:34:41 +0100 |
---|---|---|
committer | Matthew Heon <mheon@redhat.com> | 2022-02-23 14:25:09 -0500 |
commit | a0c34d64a53e0eaa42ea8dbe433bae96c347ddc1 (patch) | |
tree | 9ed7584652fd4420d3a4e66b88fe0d923c1433db /contrib | |
parent | 172b745d0e796327cc23c19e61973365bb1488ef (diff) | |
download | podman-a0c34d64a53e0eaa42ea8dbe433bae96c347ddc1.tar.gz podman-a0c34d64a53e0eaa42ea8dbe433bae96c347ddc1.tar.bz2 podman-a0c34d64a53e0eaa42ea8dbe433bae96c347ddc1.zip |
Load ip_tables modules at boot
Rootless users cannot load the ip_tables module, in fedora 36 this
module is no longer loaded by default so we have to add it manually.
This is needed because rootless network setup tries to use iptables
and if iptables-legacy is used instead of iptables-nft it will fail.
To provide a better user experience we will load the module at boot.
Note that this is not needed for RHEL because iptables-legacy is not
supported on RHEL 8 and newer.
[NO NEW TESTS NEEDED]
Fixes #12661
Signed-off-by: Paul Holzinger <pholzing@redhat.com>
Diffstat (limited to 'contrib')
-rw-r--r-- | contrib/modules-load.d/podman-iptables.conf | 5 |
1 files changed, 5 insertions, 0 deletions
diff --git a/contrib/modules-load.d/podman-iptables.conf b/contrib/modules-load.d/podman-iptables.conf new file mode 100644 index 000000000..001ef8af8 --- /dev/null +++ b/contrib/modules-load.d/podman-iptables.conf @@ -0,0 +1,5 @@ +# On fedora 36 ip_tables is no longer auto loaded and rootless user have no permsissions to load it. +# When we have actual nftables support in the future we might want to revisit this. +# If you use iptables-nft this is not needed. +ip_tables +ip6_tables |