Blame SOURCES/0002-fw-If-direct-rules-fail-to-apply-add-a-Direct-label-.patch

e3f863
From efdecad74ac18d93b62a6f9ba3792904bb976b3b Mon Sep 17 00:00:00 2001
e3f863
From: Eric Garver <e@erig.me>
e3f863
Date: Fri, 17 Aug 2018 13:26:18 -0400
e3f863
Subject: [PATCH 2/2] fw: If direct rules fail to apply add a "Direct" label to
e3f863
 error msg
e3f863
e3f863
Since they're free form it's easy to write a bad rule. This will at
e3f863
least let user know where to look.
e3f863
e3f863
(cherry picked from commit db2d72e32579d14b5f03c6f06a9e6f38b00717cd)
e3f863
---
e3f863
 src/firewall/core/fw.py | 12 +++++++++---
e3f863
 1 file changed, 9 insertions(+), 3 deletions(-)
e3f863
e3f863
diff --git a/src/firewall/core/fw.py b/src/firewall/core/fw.py
e3f863
index 9079f1bbc6a4..21f5fc680c10 100644
e3f863
--- a/src/firewall/core/fw.py
e3f863
+++ b/src/firewall/core/fw.py
e3f863
@@ -440,9 +440,15 @@ class Firewall(object):
e3f863
             log.debug1("Applying direct chains rules and passthrough rules")
e3f863
             self.direct.apply_direct(transaction)
e3f863
 
e3f863
-            # Execute transaction
e3f863
-            transaction.execute(True)
e3f863
-            transaction.clear()
e3f863
+            # since direct rules are easy to make syntax errors lets highlight
e3f863
+            # the cause if the transaction fails.
e3f863
+            try:
e3f863
+                transaction.execute(True)
e3f863
+                transaction.clear()
e3f863
+            except FirewallError as e:
e3f863
+                raise FirewallError(e.code, "Direct: %s" % (e.msg if e.msg else ""))
e3f863
+            except Exception:
e3f863
+                raise
e3f863
 
e3f863
         del transaction
e3f863
 
e3f863
-- 
e3f863
2.18.0
e3f863