canonical / core18

The core18 base snap
14 stars 26 forks source link

iptables not present in core18 #132

Closed albertodonato closed 5 years ago

albertodonato commented 5 years ago

The iptables binary is not included in core18, so even a snap with the firewall-control plug connected can't access it

vorlonofportland commented 5 years ago

This sounds like it makes sense, but I wonder why this wasn't identified earlier as a requirement. @pedronis is there a list somewhere of interfaces that snapd expects to be provided by the core18 snap?

mvo5 commented 5 years ago

Yes, we should add iptables back. About the second part of the question - we are working on code that can check requirements for interfaces. Its a bit tricky as it requires simulating interface connections and parsing the apparmor rules this is why its not run on core18 yet. But it will be soon. Sorry for the trouble.