Firewall error in WAN zone

Hi one more time i need help...i see this in output console when i run a script.

* Zone 'wan'
Warning: iptc_commit(): No chain/target/match by that name

cat /etc/config/firewall

root@OpenWrt:~# cat /etc/config/firewall

config defaults
	option syn_flood '1'
	option input 'ACCEPT'
	option output 'ACCEPT'
	option forward 'REJECT'

config zone
	option name 'lan'
	list network 'lan'
	option input 'ACCEPT'
	option output 'ACCEPT'
	option forward 'ACCEPT'

config zone
	option name 'wan'
	list network 'wan'
	list network 'wan6'
	option input 'REJECT'
	option output 'ACCEPT'
	option forward 'REJECT'
	option masq '1'
	option mtu_fix '1'

config forwarding
	option src 'lan'
	option dest 'wan'

config rule
	option name 'Allow-DHCP-Renew'
	option src 'wan'
	option proto 'udp'
	option dest_port '68'
	option target 'ACCEPT'
	option family 'ipv4'

config rule
	option name 'Allow-Ping'
	option src 'wan'
	option proto 'icmp'
	option icmp_type 'echo-request'
	option family 'ipv4'
	option target 'ACCEPT'

config rule
	option name 'Allow-IGMP'
	option src 'wan'
	option proto 'igmp'
	option family 'ipv4'
	option target 'ACCEPT'

config rule
	option name 'Allow-DHCPv6'
	option src 'wan'
	option proto 'udp'
	option src_ip 'fc00::/6'
	option dest_ip 'fc00::/6'
	option dest_port '546'
	option family 'ipv6'
	option target 'ACCEPT'

config rule
	option name 'Allow-MLD'
	option src 'wan'
	option proto 'icmp'
	option src_ip 'fe80::/10'
	list icmp_type '130/0'
	list icmp_type '131/0'
	list icmp_type '132/0'
	list icmp_type '143/0'
	option family 'ipv6'
	option target 'ACCEPT'

config rule
	option name 'Allow-ICMPv6-Input'
	option src 'wan'
	option proto 'icmp'
	list icmp_type 'echo-request'
	list icmp_type 'echo-reply'
	list icmp_type 'destination-unreachable'
	list icmp_type 'packet-too-big'
	list icmp_type 'time-exceeded'
	list icmp_type 'bad-header'
	list icmp_type 'unknown-header-type'
	list icmp_type 'router-solicitation'
	list icmp_type 'neighbour-solicitation'
	list icmp_type 'router-advertisement'
	list icmp_type 'neighbour-advertisement'
	option limit '1000/sec'
	option family 'ipv6'
	option target 'ACCEPT'

config rule
	option name 'Allow-ICMPv6-Forward'
	option src 'wan'
	option dest '*'
	option proto 'icmp'
	list icmp_type 'echo-request'
	list icmp_type 'echo-reply'
	list icmp_type 'destination-unreachable'
	list icmp_type 'packet-too-big'
	list icmp_type 'time-exceeded'
	list icmp_type 'bad-header'
	list icmp_type 'unknown-header-type'
	option limit '1000/sec'
	option family 'ipv6'
	option target 'ACCEPT'

config rule
	option name 'Allow-IPSec-ESP'
	option src 'wan'
	option dest 'lan'
	option proto 'esp'
	option target 'ACCEPT'

config rule
	option name 'Allow-ISAKMP'
	option src 'wan'
	option dest 'lan'
	option dest_port '500'
	option proto 'udp'
	option target 'ACCEPT'

config include
	option path '/etc/firewall.user'

config redirect
	option dest_port '80'
	option src 'wan'
	option name '80'
	option src_dport '80'
	option target 'DNAT'
	option dest_ip '192.168.1.100'
	option dest 'lan'
	list proto 'tcp'

config redirect
	option dest_port '443'
	option src 'wan'
	option name '443'
	option src_dport '443'
	option target 'DNAT'
	option dest_ip '192.168.1.100'
	option dest 'lan'
	list proto 'tcp'

config redirect
	option dest_port '3478-3480'
	option src 'wan'
	option name '3478-3480'
	option src_dport '3478-3480'
	option target 'DNAT'
	option dest_ip '192.168.1.100'
	option dest 'lan'
	list proto 'tcp'

config redirect
	option dest_port '3478-3479'
	option src 'wan'
	option name '3478-3479'
	option src_dport '3478-3479'
	option target 'DNAT'
	option dest_ip '192.168.1.100'
	option dest 'lan'
	list proto 'udp'

config redirect
	option dest_port '1080'
	option src 'wan'
	option name '1080'
	option src_dport '1080'
	option target 'DNAT'
	option dest_ip '192.168.1.100'
	option dest 'lan'
	list proto 'tcp'

config redirect
	option dest_port '1935'
	option src 'wan'
	option name '1935'
	option src_dport '1935'
	option target 'DNAT'
	option dest_ip '192.168.1.100'
	option dest 'lan'
	list proto 'tcp'

config redirect
	option dest_port '3128'
	option src 'wan'
	option name '3128'
	option src_dport '3128'
	option target 'DNAT'
	option dest_ip '192.168.1.100'
	option dest 'lan'
	list proto 'tcp'

config redirect
	option dest_port '8080-8081'
	option src 'wan'
	option name '8080-8081'
	option src_dport '8080-8081'
	option target 'DNAT'
	option dest_ip '192.168.1.100'
	option dest 'lan'
	list proto 'tcp'

config redirect
	option dest_port '8088'
	option src 'wan'
	option name '8088'
	option src_dport '8088'
	option target 'DNAT'
	option dest_ip '192.168.1.100'
	option dest 'lan'
	list proto 'tcp'

config redirect
	option dest_port '8888'
	option src 'wan'
	option name '8888'
	option src_dport '8888'
	option target 'DNAT'
	option dest_ip '192.168.1.100'
	option dest 'lan'
	list proto 'tcp'

config redirect
	option dest_port '20000-25000'
	option src 'wan'
	option name '20000-25000'
	option src_dport '20000-25000'
	option target 'DNAT'
	option dest_ip '192.168.1.100'
	option dest 'lan'
	list proto 'tcp'

config redirect
	option dest_port '32801'
	option src 'wan'
	option name '32801'
	option src_dport '32801'
	option target 'DNAT'
	option dest_ip '192.168.1.100'
	option dest 'lan'
	list proto 'tcp'

config redirect
	option dest_port '32803'
	option src 'wan'
	option name '32803'
	option src_dport '32803'
	option target 'DNAT'
	option dest_ip '192.168.1.100'
	option dest 'lan'
	list proto 'tcp'

config redirect
	option dest_port '3074'
	option src 'wan'
	option name '3074'
	option src_dport '3074'
	option target 'DNAT'
	option dest_ip '192.168.1.100'
	option dest 'lan'
	list proto 'udp'

config redirect
	option dest_port '5060'
	option src 'wan'
	option name '5060'
	option src_dport '5060'
	option target 'DNAT'
	option dest_ip '192.168.1.100'
	option dest 'lan'
	list proto 'udp'

config redirect
	option dest_port '5062'
	option src 'wan'
	option name '5062'
	option src_dport '5062'
	option target 'DNAT'
	option dest_ip '192.168.1.100'
	option dest 'lan'
	list proto 'udp'

config redirect
	option dest_port '12000-29999'
	option src 'wan'
	option name '12000-29999'
	option src_dport '12000-29999'
	option target 'DNAT'
	option dest_ip '192.168.1.100'
	option dest 'lan'
	list proto 'udp'

config redirect
	option dest_port '32801-32825'
	option src 'wan'
	option name '32801-32825'
	option src_dport '32801-32825'
	option target 'DNAT'
	option dest_ip '192.168.1.100'
	option dest 'lan'
	list proto 'udp'

config redirect
	option dest_port '80'
	option src 'wan'
	option name '80'
	option src_dport '80'
	option target 'DNAT'
	option dest_ip '192.168.1.100'
	option dest 'lan'
	list proto 'udp'

I have untick Use builtin IPv6-management in Interfaces-->Wan if it matters.

Solved...
From system log...

Sun Jul 11 11:43:18 2021 kern.info kernel: [ 9184.407896] xt_CT: No such helper "sip"

Install package kmod-nf-nathelper-extra

 * Zone 'wan'
 * Populating IPv6 filter table

This topic was automatically closed 10 days after the last reply. New replies are no longer allowed.