Occasionally we have the following log entries:
dhcpd[14275]: send_packet: Operation not permitteddhcpd[14275]: dhcp.c:3652: Failed to send 300 byte long packet over fallback interface.
I'd like to add
iptables -A OUTPUT -p udp --sport 1024:65535 --dport 67 -j ACCEPTiptables -A OUTPUT -p udp --sport 68 --dport 67 -j ACCEPT
but unfortunately simple_firewall does not support the configuration for the OUTPUT chain.
Occasionally we have the following log entries:
dhcpd[14275]: send_packet: Operation not permitted
dhcpd[14275]: dhcp.c:3652: Failed to send 300 byte long packet over fallback interface.
According to http://www.linuxquestions.org/questions/linux-networking-3/dhcpd-complains-failed-to-send-300-byte-long-packet-over-fallback-interface-4175548986/ the reason for that is are too restrictive firewall rules, especially the outgoing rules.
I'd like to add
iptables -A OUTPUT -p udp --sport 1024:65535 --dport 67 -j ACCEPT
iptables -A OUTPUT -p udp --sport 68 --dport 67 -j ACCEPT
but unfortunatelysimple_firewall
does not support the configuration for the OUTPUT chain.