If you emerge, enable and try to start net-firewall/ufw without the option: CONFIG_IP6_NF_MATCH_RT set in the kernel, it will generate an error during boot and not start. This is not explicitly defined in the portage package, so portage will proceed without a warning if this option is not enabled. Note: This was tested on systemd. Reproducible: Always Steps to Reproduce: 1.Emerge net-firewall/ufw with a kernel not compiled with CONFIG_IP6_NF_MATCH_RT 2.Enable net-firewall/ufw at boot 3.Reboot the machine Actual Results: A service that fails to start. Expected Results: A service that should've started.