Package Details: cs-firewall-bouncer 0.0.28-1

Git Clone URL: https://aur.archlinux.org/cs-firewall-bouncer.git (read-only, click to copy)
Package Base: cs-firewall-bouncer
Description: Use the CrowdSec API to create a dynamic blocklist used by supported firewalls.
Upstream URL: https://hub.crowdsec.net/author/crowdsecurity/bouncers/cs-firewall-bouncer
Licenses: MIT
Provides: crowdsec-firewall-bouncer, cs-firewall-bouncer
Submitter: solveit
Maintainer: amish
Last Packager: solveit
Votes: 5
Popularity: 0.73
First Submitted: 2021-12-01 20:50 (UTC)
Last Updated: 2023-11-07 14:31 (UTC)

Dependencies (6)

Required by (0)

Sources (3)

Latest Comments

Mike616 commented on 2022-12-04 05:20 (UTC)

@solveit I think that was it. Rookie mistake. Thanks.

solveit commented on 2022-12-02 20:23 (UTC)

@mike616 - I'm not able to recreate this issue. I'm running the same revision of ipset. I'm also on nft 1.0.5 and kernel 6.0.10-arch2. Could this be an issue where there's an existing list or a needed reboot due to some package update?

Mike616 commented on 2022-12-02 07:56 (UTC)

I'm stuck getting this to run. I have ipset installed but when I start the bouncer service, I get:

iptables init failed: error while creating set : exit status 1 --> ipset v7.16: Kernel error received: Invalid argument

This also seems to happen when I try to create ipset sets manually:

ipset create crowdsec-blacklists hash:ip timeout 0 maxelem 150000

ipset v7.16: Kernel error received: Invalid argument

It seems to be something with the hash:ip argument.

solveit commented on 2022-03-03 20:22 (UTC) (edited on 2022-03-03 21:21 (UTC) by solveit)

@kully_singh - I'll take a look at the dependencies and make sure I have them properly defined in the PKGBUILD. You will need to install the ipset package.

kully_singh commented on 2022-02-26 11:07 (UTC)

I've installed 'crowdsec' on manjaro, it works well.

But, 'cs-firewall-bouncer' installed but during installation, it says: Job for crowdsec-firewall-bouncer.service failed because the control process exited with error code

here is the log from systemctl status crowdsec-firewall-bouncer.service:

× crowdsec-firewall-bouncer.service - The firewall bouncer for CrowdSec Loaded: loaded (/etc/systemd/system/crowdsec-firewall-bouncer.service; enabled; vendor preset: disabled) Active: failed (Result: exit-code) since Sat 2022-02-26 10:50:07 GMT; 12min ago Main PID: 10022 (code=exited, status=1/FAILURE) CPU: 11ms

Feb 26 10:50:07 user systemd[1]: Starting The firewall bouncer for CrowdSec... Feb 26 10:50:07 user crowdsec-firewall-bouncer[10016]: time="2022-02-26T10:50:07Z" level=info msg="crowdsec-firewall-bouncer 0.0.22-e77ad5a86964" Feb 26 10:50:07 user crowdsec-firewall-bouncer[10022]: time="2022-02-26T10:50:07Z" level=info msg="crowdsec-firewall-bouncer 0.0.22-e77ad5a86964" Feb 26 10:50:07 user crowdsec-firewall-bouncer[10022]: time="26-02-2022 10:50:07" level=fatal msg="unable to find ipset" Feb 26 10:50:07 user systemd[1]: crowdsec-firewall-bouncer.service: Main process exited, code=exited, status=1/FAILURE Feb 26 10:50:07 user systemd[1]: crowdsec-firewall-bouncer.service: Failed with result 'exit-code'. Feb 26 10:50:07 user systemd[1]: Failed to start The firewall bouncer for CrowdSec.

solveit commented on 2022-01-31 16:45 (UTC)

@rmdes - I think this is an issue where the old package was cached but had a matching name. I adjusted the PKGBUILD to include the $pkgver so that it doesn't attempt to use an old cache src package.

rmdes commented on 2022-01-30 12:55 (UTC)

verification failure when building the package upgrade : ==> Validating source files with sha256sums... cs-firewall-bouncer-source.tgz ... FAILED cs-firewall-bouncer.install ... Passed install.sh.patch ... Passed ==> ERROR: One or more files did not pass the validity check! Failed to build cs-firewall-bouncer