Firewalld 0.4.0 added ipset support: http://www.firewalld.org/2016/02/firewalld-0-4-0-release/ http://koji.fedoraproject.org/koji/rpminfo?rpmID=7425346 However, it is still missing from the ebuild. Though it seems to work without ipset, it complains about it: > /firewalld[25257]: ERROR: ipset not usable, disabling ipset usage in firewall.
Currently, I do not want to add a dependency on net-firewall/ipset. firewalld logs a rather strong sounding message "ERROR: ipset not usable,..." but works just fine.
Created attachment 436024 [details] build.log This is a fatal error in 0.4.2. Please reopen.
Oh wow. I missed that.
commit 491a398cc74ccf883132058d70138985a0a3ebf5 Author: Matthias Maier <tamiko@gentoo.org> Date: Wed Jun 1 11:41:59 2016 -0500 net-firewall/firewalld: add dependency on net-firewall/ipset, bug #576824 Package-Manager: portage-2.2.28