Брандмауэр UFW включен, но не запускается при загрузке в Ubuntu Mate 19.04

Я включил брандмауэр, sudo ufw enableнесколько раз за последние две недели, но все равно UFW не запускается при загрузке в новой установке Ubuntu Mate 19.04

$ sudo ufw status
Status: inactive

Примечание для модов / администраторов: я просмотрел следующие посты AksUbuntu: 1, 2 и многие другие темы, но UFW по-прежнему не запускается при загрузке. Так что моя проблема, кажется, отличается от них.

Шаги, которые я применил:

sudo ufw enable
sudo crontab -e
@reboot sudo ufw enable

Я также попытался применить обходной путь из этой ошибки Launchpad #1826187, но на первом шаге получил ошибку:

https://bugs.launchpad.net/ubuntu/+source/firewalld/+bug/1826187

$ sudo ln -s /sbin/iptables /usr/sbin/
ln: failed to create symbolic link '/usr/sbin/iptables': File exists
sudo nano /etc/ufw/ufw.conf

# /etc/ufw/ufw.conf
#

# Set to yes to start on boot. If setting this remotely, be sure to add a rule
# to allow your remote connection before starting ufw. Eg: 'ufw allow 22/tcp'
ENABLED=yes

# Please use the 'ufw' command to set the loglevel. Eg: 'ufw logging medium'.
# See 'man ufw' for details.
LOGLEVEL=low
journalctl | grep ufw*


May 05 16:54:08 um polkitd(authority=local)[1427]: Operator of unix-session:c1 successfully authenticated as unix-user:admn to gain ONE-SHOT authorization for action com.ubuntu.pkexec.gufw for unix-process:24808:1249931 [/bin/sh /usr/bin/gufw] (owned by unix-user:admn)

May 05 16:54:08 um pkexec[24810]: admn: Executing command [USER=root] [TTY=unknown] [CWD=/home/admn] [COMMAND=/usr/bin/gufw-pkexec admn]
May 05 16:55:21 um sudo[25074]:     admn : TTY=pts/0 ; PWD=/home/admn ; USER=root ; COMMAND=/usr/bin/systemctl enable ufw
May 05 16:55:35 um sudo[25178]:     admn : TTY=pts/0 ; PWD=/home/admn ; USER=root ; COMMAND=/usr/bin/systemctl start ufw
May 05 16:56:29 um org.mate.panel.applet.MateMenuAppletFactory[1953]: gufw

May 05 16:56:36 um polkitd(authority=local)[1427]: Operator of unix-session:c1 successfully authenticated as unix-user:admn to gain ONE-SHOT authorization for action com.ubuntu.pkexec.gufw for unix-process:25198:1264769 [/bin/sh /usr/bin/gufw] (owned by unix-user:admn)

May 05 16:56:36 um pkexec[25200]: admn: Executing command [USER=root] [TTY=unknown] [CWD=/home/admn] [COMMAND=/usr/bin/gufw-pkexec admn]
May 05 16:57:03 um sudo[25299]:     admn : TTY=pts/0 ; PWD=/home/admn ; USER=root ; COMMAND=/usr/sbin/ufw status verbose
May 05 17:03:14 um sudo[25855]:     admn : TTY=pts/0 ; PWD=/home/admn ; USER=root ; COMMAND=/usr/sbin/ufw status
May 05 17:04:11 um org.mate.panel.applet.MateMenuAppletFactory[1953]: gufw
May 05 20:58:50 um org.mate.panel.applet.MateMenuAppletFactory[1953]: EEEEeEeek! 1 GeglBuffers leaked

May 06 08:53:27 um polkitd(authority=local)[1427]: Operator of unix-session:c1 successfully authenticated as unix-user:admn to gain ONE-SHOT authorization for action com.ubuntu.pkexec.gufw for unix-process:11896:7005898 [/bin/sh /usr/bin/gufw] (owned by unix-user:admn)

May 06 08:53:27 um pkexec[11898]: admn: Executing command [USER=root] [TTY=unknown] [CWD=/home/admn] [COMMAND=/usr/bin/gufw-pkexec admn]
May 06 08:55:29 um sudo[12181]:     admn : TTY=pts/0 ; PWD=/home/admn ; USER=root ; COMMAND=/usr/sbin/ufw status
May 06 08:56:30 um sudo[12196]:     admn : TTY=pts/0 ; PWD=/home/admn ; USER=root ; COMMAND=/usr/sbin/ufw enable
May 06 08:56:36 um org.mate.panel.applet.MateMenuAppletFactory[1953]: gufw

May 06 08:56:43 um polkitd(authority=local)[1427]: Operator of unix-session:c1 successfully authenticated as unix-user:admn to gain ONE-SHOT authorization for action com.ubuntu.pkexec.gufw for unix-process:12339:7025505 [/bin/sh /usr/bin/gufw] (owned by unix-user:admn)

May 06 08:56:43 um pkexec[12341]: admn: Executing command [USER=root] [TTY=unknown] [CWD=/home/admn] [COMMAND=/usr/bin/gufw-pkexec admn]
May 06 08:57:12 um sudo[12440]:     admn : TTY=pts/0 ; PWD=/home/admn ; USER=root ; COMMAND=/usr/sbin/ufw status

May 06 10:44:26 um CRON[1082]: (root) CMD (ufw enable)
May 06 10:45:01 um sudo[2440]:     admn : TTY=pts/0 ; PWD=/home/admn ; USER=root ; COMMAND=/usr/sbin/ufw status

pluma /var/log/ufw.log

May  6 08:56:32 um kernel: [70247.168658] [UFW BLOCK] IN=wlx98ded00b03a5 OUT= MAC=98:de:d0:0b:03:a5:00:0a:f5:6a:72:44:08:00 SRC=74.125.68.189 DST=192.168.43.28 LEN=104 TOS=0x00 PREC=0x00 TTL=103 ID=21312 PROTO=TCP SPT=443 DPT=57878 WINDOW=415 RES=0x00 ACK PSH URGP=0 
May  6 08:56:32 um kernel: [70247.191853] [UFW BLOCK] IN=wlx98ded00b03a5 OUT= MAC=98:de:d0:0b:03:a5:00:0a:f5:6a:72:44:08:00 SRC=74.125.68.189 DST=192.168.43.28 LEN=104 TOS=0x00 PREC=0x00 TTL=103 ID=21752 PROTO=TCP SPT=443 DPT=57878 WINDOW=415 RES=0x00 ACK PSH URGP=0 
May  6 08:56:34 um kernel: [70248.686756] [UFW BLOCK] IN=wlx98ded00b03a5 OUT= MAC=98:de:d0:0b:03:a5:00:0a:f5:6a:72:44:08:00 SRC=74.125.68.189 DST=192.168.43.28 LEN=104 TOS=0x00 PREC=0x00 TTL=103 ID=22388 PROTO=TCP SPT=443 DPT=57878 WINDOW=415 RES=0x00 ACK PSH URGP=0 
May  6 08:56:37 um kernel: [70251.658011] [UFW BLOCK] IN=wlx98ded00b03a5 OUT= MAC=98:de:d0:0b:03:a5:00:0a:f5:6a:72:44:08:00 SRC=74.125.68.189 DST=192.168.43.28 LEN=104 TOS=0x00 PREC=0x00 TTL=103 ID=23779 PROTO=TCP SPT=443 DPT=57878 WINDOW=415 RES=0x00 ACK PSH URGP=0 
May  6 08:56:43 um kernel: [70257.648385] [UFW BLOCK] IN=wlx98ded00b03a5 OUT= MAC=98:de:d0:0b:03:a5:00:0a:f5:6a:72:44:08:00 SRC=74.125.68.189 DST=192.168.43.28 LEN=104 TOS=0x00 PREC=0x00 TTL=103 ID=26868 PROTO=TCP SPT=443 DPT=57878 WINDOW=415 RES=0x00 ACK PSH URGP=0 
May  6 08:57:04 um kernel: [70278.472637] [UFW BLOCK] IN=wlx98ded00b03a5 OUT= MAC=98:de:d0:0b:03:a5:00:0a:f5:6a:72:44:08:00 SRC=162.125.18.133 DST=192.168.43.28 LEN=309 TOS=0x00 PREC=0x00 TTL=45 ID=47310 DF PROTO=TCP SPT=443 DPT=51806 WINDOW=200 RES=0x00 ACK PSH URGP=0 
May  6 08:57:04 um kernel: [70278.472832] [UFW BLOCK] IN=wlx98ded00b03a5 OUT= MAC=98:de:d0:0b:03:a5:00:0a:f5:6a:72:44:08:00 SRC=162.125.18.133 DST=192.168.43.28 LEN=309 TOS=0x00 PREC=0x00 TTL=45 ID=47311 DF PROTO=TCP SPT=443 DPT=51806 WINDOW=200 RES=0x00 ACK PSH URGP=0 
May  6 08:57:05 um kernel: [70279.726880] [UFW BLOCK] IN=wlx98ded00b03a5 OUT= MAC=98:de:d0:0b:03:a5:00:0a:f5:6a:72:44:08:00 SRC=162.125.18.133 DST=192.168.43.28 LEN=309 TOS=0x00 PREC=0x00 TTL=45 ID=47312 DF PROTO=TCP SPT=443 DPT=51806 WINDOW=200 RES=0x00 ACK PSH URGP=0 
May  6 08:57:07 um kernel: [70282.227256] [UFW BLOCK] IN=wlx98ded00b03a5 OUT= MAC=98:de:d0:0b:03:a5:00:0a:f5:6a:72:44:08:00 SRC=162.125.18.133 DST=192.168.43.28 LEN=309 TOS=0x00 PREC=0x00 TTL=45 ID=47313 DF PROTO=TCP SPT=443 DPT=51806 WINDOW=200 RES=0x00 ACK PSH URGP=0 
May  6 08:57:14 um kernel: [70288.338384] [UFW BLOCK] IN=wlx98ded00b03a5 OUT= MAC=98:de:d0:0b:03:a5:00:0a:f5:6a:72:44:08:00 SRC=162.125.18.133 DST=192.168.43.28 LEN=309 TOS=0x00 PREC=0x00 TTL=45 ID=47314 DF PROTO=TCP SPT=443 DPT=51806 WINDOW=200 RES=0x00 ACK PSH URGP=0 
May  6 08:57:22 um kernel: [70297.295753] [UFW BLOCK] IN=wlx98ded00b03a5 OUT= MAC=98:de:d0:0b:03:a5:00:0a:f5:6a:72:44:08:00 SRC=162.125.18.133 DST=192.168.43.28 LEN=309 TOS=0x00 PREC=0x00 TTL=45 ID=47315 DF PROTO=TCP SPT=443 DPT=51806 WINDOW=200 RES=0x00 ACK PSH URGP=0 
May  6 08:57:26 um kernel: [70300.836765] [UFW BLOCK] IN=wlx98ded00b03a5 OUT= MAC=98:de:d0:0b:03:a5:00:0a:f5:6a:72:44:08:00 SRC=162.125.18.133 DST=192.168.43.28 LEN=309 TOS=0x00 PREC=0x00 TTL=45 ID=21558 DF PROTO=TCP SPT=443 DPT=51862 WINDOW=182 RES=0x00 ACK PSH URGP=0 
May  6 08:57:36 um kernel: [70310.498140] [UFW BLOCK] IN=wlx98ded00b03a5 OUT= MAC=98:de:d0:0b:03:a5:00:0a:f5:6a:72:44:08:00 SRC=162.125.18.133 DST=192.168.43.28 LEN=309 TOS=0x00 PREC=0x00 TTL=45 ID=21561 DF PROTO=TCP SPT=443 DPT=51862 WINDOW=182 RES=0x00 ACK PSH URGP=0 
May  6 08:58:06 um kernel: [70340.874895] [UFW BLOCK] IN=wlx98ded00b03a5 OUT= MAC=98:de:d0:0b:03:a5:00:0a:f5:6a:72:44:08:00 SRC=162.125.18.133 DST=192.168.43.28 LEN=308 TOS=0x00 PREC=0x00 TTL=45 ID=21563 DF PROTO=TCP SPT=443 DPT=51862 WINDOW=182 RES=0x00 ACK URGP=0 
May  6 08:58:17 um kernel: [70352.197035] [UFW BLOCK] IN=wlx98ded00b03a5 OUT= MAC=98:de:d0:0b:03:a5:00:0a:f5:6a:72:44:08:00 SRC=162.125.18.133 DST=192.168.43.28 LEN=64 TOS=0x00 PREC=0x00 TTL=45 ID=21565 DF PROTO=TCP SPT=443 DPT=51862 WINDOW=182 RES=0x00 ACK URGP=0 
May  6 08:58:54 um kernel: [70388.478038] [UFW BLOCK] IN=wlx98ded00b03a5 OUT= MAC=98:de:d0:0b:03:a5:00:0a:f5:6a:72:44:08:00 SRC=198.252.206.25 DST=192.168.43.28 LEN=113 TOS=0x08 PREC=0x60 TTL=47 ID=65531 DF PROTO=TCP SPT=443 DPT=47040 WINDOW=62 RES=0x00 ACK PSH URGP=0 
May  6 08:58:54 um kernel: [70389.043909] [UFW BLOCK] IN=wlx98ded00b03a5 OUT= MAC=98:de:d0:0b:03:a5:00:0a:f5:6a:72:44:08:00 SRC=198.252.206.25 DST=192.168.43.28 LEN=113 TOS=0x08 PREC=0x60 TTL=47 ID=65532 DF PROTO=TCP SPT=443 DPT=47040 WINDOW=62 RES=0x00 ACK PSH URGP=0 
May  6 08:59:15 um kernel: [70409.752549] [UFW BLOCK] IN=wlx98ded00b03a5 OUT= MAC=98:de:d0:0b:03:a5:00:0a:f5:6a:72:44:08:00 SRC=198.252.206.25 DST=192.168.43.28 LEN=113 TOS=0x08 PREC=0x60 TTL=47 ID=1 DF PROTO=TCP SPT=443 DPT=47040 WINDOW=62 RES=0x00 ACK PSH URGP=0 

Я не знаю, может ли это быть связано в любом случае, но Ntopng установлен на этом компьютере. Пожалуйста, дайте мне знать, если вы хотите больше информации, спасибо.

0 ответов

Другие вопросы по тегам