Solaris 11.3 Zone : Packet Filter Service Does Not Start
(Doc ID 2644843.1)
Last updated on MARCH 02, 2020
Applies to:Solaris Operating System - Version 11.4 and later
Information in this document applies to any platform.
One tries to start firewall service in local shared non-global zone, it goes into disabled mode as shown below:
root@host1l# svcs -xv firewall
svc:/network/firewall:default (Network Firewall)
State: disabled since February 26, 2020 09:03:01 AM PST
Reason: Temporarily disabled by service method: "svc:/network/firewall:default does not run in a shared stack zone."
See: man -M /usr/share/man -s 5 pf.conf
Impact: This service is not running.
Log file /var/svc/log/network-firewall:default.log shows error as below:
[ Feb 26 09:03:01 Executing start method ("/lib/svc/method/firewall start "/etc/firewall/pf.os" "/etc/firewall/pf.conf""). ]
[ Feb 26 09:03:01 Method "start" exited with status 101. ]
[ Feb 26 09:03:01 "start" method requested temporary disable: "svc:/network/firewall:default does not run in a shared stack zone"
To view full details, sign in with your My Oracle Support account.
Don't have a My Oracle Support account? Click to get started!
In this Document