Blame SOURCES/libvirt-Revert-RHEL-network-regain-guest-network-connectivity-after-firewalld-switch-to-nftables.patch

9c6c51
From 195908ad66fc52643d94eca0f45e5740f25e3e78 Mon Sep 17 00:00:00 2001
9c6c51
Message-Id: <195908ad66fc52643d94eca0f45e5740f25e3e78@dist-git>
9c6c51
From: Laine Stump <laine@laine.org>
9c6c51
Date: Fri, 1 Feb 2019 20:29:26 -0500
9c6c51
Subject: [PATCH] Revert "RHEL: network: regain guest network connectivity
9c6c51
 after firewalld switch to nftables"
9c6c51
MIME-Version: 1.0
9c6c51
Content-Type: text/plain; charset=UTF-8
9c6c51
Content-Transfer-Encoding: 8bit
9c6c51
9c6c51
This reverts commit 54e270d7fb68b41002654374d395e4f260a24add.
9c6c51
9c6c51
This patch appeared in libvirt-4.5.0-11.el8 (RHEL git commit id
9c6c51
2fb53957). It was a downstream-only temporary fix to the networking
9c6c51
issues resulting from firewalld's switch to using nftables. Now that
9c6c51
there is a permanent fix upstream we can revert this patch and use the
9c6c51
upstream patches instead.
9c6c51
9c6c51
https://bugzilla.redhat.com/1650320
9c6c51
9c6c51
Signed-off-by: Laine Stump <laine@laine.org>
9c6c51
Reviewed-by: Ján Tomko <jtomko@redhat.com>
9c6c51
---
9c6c51
 libvirt.spec.in             | 14 --------------
9c6c51
 src/network/Makefile.inc.am | 10 +---------
9c6c51
 src/network/libvirt.zone    | 15 ---------------
9c6c51
 3 files changed, 1 insertion(+), 38 deletions(-)
9c6c51
 delete mode 100644 src/network/libvirt.zone
9c6c51
9c6c51
diff --git a/src/network/Makefile.inc.am b/src/network/Makefile.inc.am
9c6c51
index 20d899e699..508c8c0422 100644
9c6c51
--- a/src/network/Makefile.inc.am
9c6c51
+++ b/src/network/Makefile.inc.am
9c6c51
@@ -87,11 +87,6 @@ install-data-network:
9c6c51
 	( cd $(DESTDIR)$(confdir)/qemu/networks/autostart && \
9c6c51
 	  rm -f default.xml && \
9c6c51
 	  $(LN_S) ../default.xml default.xml )
9c6c51
-if HAVE_FIREWALLD
9c6c51
-	$(MKDIR_P) "$(DESTDIR)$(prefix)/lib/firewalld/zones"
9c6c51
-	$(INSTALL_DATA) $(srcdir)/network/libvirt.zone \
9c6c51
-	  $(DESTDIR)$(prefix)/lib/firewalld/zones/libvirt.xml
9c6c51
-endif HAVE_FIREWALLD
9c6c51
 
9c6c51
 uninstall-data-network:
9c6c51
 	rm -f $(DESTDIR)$(confdir)/qemu/networks/autostart/default.xml
9c6c51
@@ -100,13 +95,10 @@ uninstall-data-network:
9c6c51
 	rmdir "$(DESTDIR)$(confdir)/qemu/networks" || :
9c6c51
 	rmdir "$(DESTDIR)$(localstatedir)/lib/libvirt/network" ||:
9c6c51
 	rmdir "$(DESTDIR)$(localstatedir)/run/libvirt/network" ||:
9c6c51
-if HAVE_FIREWALLD
9c6c51
-	rm -f  $(DESTDIR)$(prefix)/lib/firewalld/zones/libvirt.xml
9c6c51
-endif HAVE_FIREWALLD
9c6c51
 
9c6c51
 endif WITH_NETWORK
9c6c51
 
9c6c51
-EXTRA_DIST += network/default.xml network/libvirt.zone
9c6c51
+EXTRA_DIST += network/default.xml
9c6c51
 
9c6c51
 .PHONY: \
9c6c51
 	install-data-network \
9c6c51
diff --git a/src/network/libvirt.zone b/src/network/libvirt.zone
9c6c51
deleted file mode 100644
9c6c51
index 355a70b4da..0000000000
9c6c51
--- a/src/network/libvirt.zone
9c6c51
+++ /dev/null
9c6c51
@@ -1,15 +0,0 @@
9c6c51
-
9c6c51
-<zone target="ACCEPT">
9c6c51
-  <short>libvirt</short>
9c6c51
-  <description>All network connections are accepted. This also permits packets to/from interfaces in the zone to be forwarded. This zone is intended to be used only by libvirt virtual networks.</description>
9c6c51
-  <interface name="virbr0"/>
9c6c51
-  <interface name="virbr1"/>
9c6c51
-  <interface name="virbr2"/>
9c6c51
-  <interface name="virbr3"/>
9c6c51
-  <interface name="virbr4"/>
9c6c51
-  <interface name="virbr5"/>
9c6c51
-  <interface name="virbr6"/>
9c6c51
-  <interface name="virbr7"/>
9c6c51
-  <interface name="virbr8"/>
9c6c51
-  <interface name="virbr9"/>
9c6c51
-</zone>
9c6c51
-- 
9c6c51
2.20.1
9c6c51