On Thu, 2025-10-23 at 16:26 +0200, Dmytro Nezhevenko wrote: > Package: src:linux > Version: 6.17.2-1~exp1 > Severity: normal > X-Debbugs-Cc: debian-amd64@lists.debian.org > User: debian-amd64@lists.debian.org > Usertags: amd64 > > Dear Maintainer, > > It looks like kernel 6.17.2 from experimental has no support for > CONFIG_NETFILTER_XT_TARGET_MASQUERADE > > This prevents libvirt from bringing up virtual bridge networking with > it's default configuration (that uses iptables) > > Current sid kernel (6.16) is OK. > > PS. Sorry if it's intentional change for transition from iptables [...] There was an intentional change upstream: there is a new symbol CONFIG_NETFILTER_XTABLES_LEGACY that iptables etc. depend on, and it is off by default. But we certainly shouldn't break libvirt, so I think we need to turn that back on for now. Ben. -- Ben Hutchings Never put off till tomorrow what you can avoid all together.
Attachment:
signature.asc
Description: This is a digitally signed message part