bugzilla-daemon at bugzilla.netfilter.org
2009-Nov-05 01:37 UTC
[Bug 618] New: connlimit doesn't work after upgrade to iptables 1.4.5
http://bugzilla.netfilter.org/show_bug.cgi?id=618
Summary: connlimit doesn't work after upgrade to iptables 1.4.5
Product: iptables
Version: unspecified
Platform: i386
OS/Version: All
Status: NEW
Severity: normal
Priority: P1
Component: iptables
AssignedTo: laforge at netfilter.org
ReportedBy: darkman82 at interfree.it
I just made un upgrade to iptables 1.4.5 and connlimit has stopped working.
I tested it on two machine:
1) Archlinux - kernel 2.6.30.4
2) Archlinux - kernel 2.6.31
I tried this:
iptables -F INPUT
iptables -A INPUT -p tcp --syn --dport 22 -m connlimit --connlimit-above 2 -j
DROP
with iptables 1.4.0, after 2 parallel connection, the server drops , with 1.4.5
doens't drop nothing.
--
Configure bugmail: http://bugzilla.netfilter.org/userprefs.cgi?tab=email
------- You are receiving this mail because: -------
You are the assignee for the bug, or are watching the assignee.
bugzilla-daemon at bugzilla.netfilter.org
2009-Nov-05 01:41 UTC
[Bug 618] connlimit doesn't work after upgrade to iptables 1.4.5
http://bugzilla.netfilter.org/show_bug.cgi?id=618
darkman82 at interfree.it changed:
What |Removed |Added
----------------------------------------------------------------------------
CC| |darkman82 at interfree.it
------- Comment #1 from darkman82 at interfree.it 2009-11-05 02:41 -------
(In reply to comment #0)
* after 3 parallel connections
--
Configure bugmail: http://bugzilla.netfilter.org/userprefs.cgi?tab=email
------- You are receiving this mail because: -------
You are the assignee for the bug, or are watching the assignee.
bugzilla-daemon at bugzilla.netfilter.org
2009-Nov-05 13:17 UTC
[Bug 618] connlimit doesn't work after upgrade to iptables 1.4.5
http://bugzilla.netfilter.org/show_bug.cgi?id=618
kaber at trash.net changed:
What |Removed |Added
----------------------------------------------------------------------------
Status|NEW |RESOLVED
Resolution| |DUPLICATE
------- Comment #2 from kaber at trash.net 2009-11-05 14:17 -------
Probably already fixed by patch in bug #610. If not, please reopen.
*** This bug has been marked as a duplicate of bug 610 ***
--
Configure bugmail: http://bugzilla.netfilter.org/userprefs.cgi?tab=email
------- You are receiving this mail because: -------
You are the assignee for the bug, or are watching the assignee.
Possibly Parallel Threads
- [Bug 515] connlimit filter doesn't work in 1.3.5 version of iptables
- [Bug 610] New: conntrack doesn't work
- Running iptables/netfilter module connlimit with stock CentOS4
- iptables connlimit
- [Bug 515] New: connlimit filter doesn't work in 1.3.5 version of iptables