The feature is intended to work on a firewall with 2 network interfaces (green + red).
Honestly I never tested it on in single-nic scenario and probably it can’t work with current templates.
maclist options is set only on green interface:
You could try to manually edit the
maclist at the end of line:
net enp0s25 dhcp,nosmurfs,optional
Then, try to restart shorewall:
Maybe it could work, but without a template-custom modification will be soon lost.