On Wed, May 3, 2017 at 11:27 PM, Aaron Conole <aconole@xxxxxxxxxx> wrote: > I wouldn't say it that way. I looked at this a while ago, and one thing > to keep in mind is the if the particular prefix path in the filesystem > (for instance /run) isn't available, then this will cause iptables to > fail. I'm not sure how many systems do provide /run - at the time it > might have been more common. That is a configuration error on the part of the distribution maintainers. The location of the iptables lock is configurable at compile time and if the distribution does not have /run, the maintainers can use another path. -- To unsubscribe from this list: send the line "unsubscribe netfilter-devel" in the body of a message to majordomo@xxxxxxxxxxxxxxx More majordomo info at http://vger.kernel.org/majordomo-info.html