Uploaded image for project: 'Modules'
  1. Modules
  2. MODULES-10785

puppetlabs-firewall : calico parse errors.

    XMLWordPrintable

    Details

    • Type: Bug
    • Status: Open
    • Priority: Normal
    • Resolution: Unresolved
    • Affects Version/s: None
    • Fix Version/s: None
    • Component/s: firewall
    • Labels:
      None
    • Template:
      MODULES Bug Template
    • Method Found:
      Needs Assessment
    • QA Risk Assessment:
      Needs Assessment

      Description

      Basic Info
      Module Version: v2.5.0
      Puppet Version: 6.2.0
      OS Name/Version: CentOS Linux release 7.8.2003 (Core)

      Describe your issue in as much detail as possible...

      Desired Behavior: puppetlabs-firewall works without errors.

      Actual Behavior:

      On the k8s node with calico I have faced with these errors:

      # puppet agent -tv --environment=new_puppet_firewallInfo: Using configured environment 'new_puppet_firewall'
      Info: Retrieving pluginfacts
      Info: Retrieving plugin
      Info: Retrieving locales
      Info: Loading facts
      Info: Caching catalog for kube-node-09.i
      Warning: Puppet::Type::Firewall::ProviderIptables: Skipping unparsable iptables rule: keys (5) and values (6) count mismatch on line: -A cali-fip-dnat -d 10.112.5.5/32 -m comment --comment "cali:KZZvcPxHzk0tEMax" -j DNAT --to-destination :0 --persistent
      Warning: Puppet::Type::Firewall::ProviderIptables: Skipping unparsable iptables rule: keys (5) and values (6) count mismatch on line: -A cali-fip-dnat -d 10.112.5.5/32 -m comment --comment "cali:KZZvcPxHzk0tEMax" -j DNAT --to-destination :0 --persistent
      Warning: Puppet::Type::Firewall::ProviderIptables: Skipping unparsable iptables rule: keys (5) and values (6) count mismatch on line: -A cali-fip-dnat -d 10.112.5.5/32 -m comment --comment "cali:KZZvcPxHzk0tEMax" -j DNAT --to-destination :0 --persistent
      Warning: Puppet::Type::Firewall::ProviderIptables: Skipping unparsable iptables rule: keys (5) and values (6) count mismatch on line: -A cali-fip-dnat -d 10.112.5.5/32 -m comment --comment "cali:KZZvcPxHzk0tEMax" -j DNAT --to-destination :0 --persistent
      Info: Applying configuration version 'k8s-puppet-01-new_puppet_firewall-2475d3a7d83'
      Warning: Puppet::Type::Firewall::ProviderIptables: Skipping unparsable iptables rule: keys (5) and values (6) count mismatch on line: -A cali-fip-dnat -d 10.112.5.5/32 -m comment --comment "cali:KZZvcPxHzk0tEMax" -j DNAT --to-destination :0 --persistent
      Notice: Applied catalog in 51.99 seconds

        Attachments

          Activity

            People

            Assignee:
            Unassigned Unassigned
            Reporter:
            azalio Mikhail Petrov
            Votes:
            0 Vote for this issue
            Watchers:
            1 Start watching this issue

              Dates

              Created:
              Updated:

                Zendesk Support