netfilter buglog - Jun 2013

Friday June 28 2013
TimeRepliesSubject
3:45PM 0 [Bug 790] Normalize iptables rules
3:26AM 0 [Bug 629] API for netfilter.
 
Wednesday June 26 2013
TimeRepliesSubject
8:21PM 5 [Bug 830] New: 關於iptables影響服務器性能事宜
 
Monday June 24 2013
TimeRepliesSubject
9:43PM 0 [Bug 589] MARK doesn't work properly with incoming traffic
9:39PM 0 [Bug 589] MARK doesn't work properly with incoming traffic
9:34PM 0 [Bug 580] iptables-restore and iptables-save lack comparison of a saved ruleset against the currently deployed rules
6:32PM 0 [Bug 580] iptables-restore and iptables-save lack comparison of a saved ruleset against the currently deployed rules
6:07PM 0 [Bug 580] iptables-restore and iptables-save lack comparison of a saved ruleset against the currently deployed rules
6:01PM 0 [Bug 580] iptables-restore and iptables-save lack comparison of a saved ruleset against the currently deployed rules
4:37PM 0 [Bug 580] iptables-restore and iptables-save lack comparison of a saved ruleset against the currently deployed rules
3:05PM 0 [Bug 790] Normalize iptables rules
2:13PM 0 [Bug 790] Normalize iptables rules
9:34AM 0 [Bug 790] Normalize iptables rules
 
Saturday June 22 2013
TimeRepliesSubject
8:05AM 0 [Bug 696] Extra tcp options for REJECT --reject-with tcp-reset-both / tcp-reset-destination
3:24AM 0 [Bug 600] ULOG target does not support --log-uid
3:24AM 0 [Bug 678] add PID and UID to netfilter-queue
 
Friday June 21 2013
TimeRepliesSubject
9:37PM 0 [Bug 589] MARK doesn't work properly with incoming traffic
7:39PM 0 [Bug 616] Duplicate rules for multi-homed hostnames. IPv4 and IPv6 inconsistent treatment.
7:37PM 0 [Bug 714] Kernel panics in same_src()
6:09PM 0 [Bug 696] Extra tcp options for REJECT --reject-with tcp-reset-both / tcp-reset-destination
6:02PM 0 [Bug 663] Postrouting + IPsec + IPv6
5:57PM 0 [Bug 714] Kernel panics in same_src()
1:50PM 0 [Bug 696] Extra tcp options for REJECT --reject-with tcp-reset-both / tcp-reset-destination
12:57PM 0 [Bug 751] IPv6 bridging bug
 
Thursday June 20 2013
TimeRepliesSubject
10:45PM 0 [Bug 751] IPv6 bridging bug
6:12PM 0 [Bug 696] Extra tcp options for REJECT --reject-with tcp-reset-both / tcp-reset-destination
5:37PM 0 [Bug 790] Normalize iptables rules
4:16PM 0 [Bug 751] IPv6 bridging bug
4:12PM 0 [Bug 592] gretap + bridge fragmentation issue
1:24AM 0 [Bug 801] Bridge dropping Ipsec fragmented packets
12:59AM 0 [Bug 495] conntrack race condition
12:58AM 0 [Bug 495] Netfilter Connection Tracking Race Condition in Kernel 2.4.x
12:58AM 0 [Bug 708] Some accepted packets get lost
 
Tuesday June 18 2013
TimeRepliesSubject
11:52AM 5 [Bug 829] New: Should not need to turn on --verbose to --list to show interface
 
Friday June 14 2013
TimeRepliesSubject
3:01PM 0 [Bug 745] [addrtype]addrtype can't match src-type BROADCAST packets
 
Thursday June 13 2013
TimeRepliesSubject
12:42AM 0 [Bug 605] Flow label for ip6_table
12:39AM 0 [Bug 789] ulog_ct loses outputentries
 
Tuesday June 11 2013
TimeRepliesSubject
4:02PM 0 [Bug 758] Retry iptables command on transient failure
4:01PM 0 [Bug 764] Doing -Z twice in parallel breaks counters
4:00PM 0 [Bug 325] Parallel execution of the iptables is impossible.
8:18AM 0 [Bug 601] log messages with flags "ACK PSH FIN"
 
Monday June 10 2013
TimeRepliesSubject
1:35PM 0 [Bug 775] -m owner ! --uid-owner False positive logging
1:34PM 0 [Bug 772] Rate Limiting
1:32PM 0 [Bug 756] iptables: Memory allocation problem.
1:31PM 0 [Bug 752] ipq_read() will return an error (rc = -1) and the error message says "Received truncated message"
1:29PM 0 [Bug 661] problems with nf_conntrack_sip starting video conference
1:27PM 0 [Bug 627] NATed TCP-connections fail arbitrarily
1:25PM 0 [Bug 601] log messages with flags "ACK PSH FIN"
1:24PM 0 [Bug 599] netfilter/iptables leaking traffic when long chains are defined
 
Sunday June 9 2013
TimeRepliesSubject
10:33AM 1 [Bug 828] New: connlabel.conf is missing in built package if it exists on the system.
 
Saturday June 8 2013
TimeRepliesSubject
10:53PM 2 [Bug 827] New: limit: support is broken
5:12PM 0 [Bug 700] provide better errors for nfq_bind_pf()
 
Thursday June 6 2013
TimeRepliesSubject
4:09PM 0 [Bug 676] connlimit doesn't work properly
3:11PM 0 [Bug 777] Suspect bug in __do_replace()
 
Wednesday June 5 2013
TimeRepliesSubject
3:24PM 0 [Bug 589] MARK doesn't work properly with incoming traffic
2:36PM 0 [Bug 662] netfilters clamp-mss-to-pmtu sets bad MSS when none was set before
12:51PM 0 [Bug 689] Ordering of multiple matches is unclear
12:51PM 0 [Bug 689] Ordering of multiple matches is unclear
12:39PM 0 [Bug 751] IPv6 bridging bug
12:36PM 0 [Bug 801] Bridge dropping Ipsec fragmented packets
12:28PM 0 [Bug 812] addrtype with limit-iface-in in ip6tables/nat/PREROUTING messes up the route cache
 
Sunday June 2 2013
TimeRepliesSubject
2:10PM 6 [Bug 826] New: libiptc/libip6tc.h doesn't specify C linkage