search for: dccp

Displaying 20 results from an estimated 68 matches for "dccp".

Did you mean: dcc
2014 May 07
0
[Bug 930] New: DCCP: --dccp-types and --dccp-option are not supported
https://bugzilla.netfilter.org/show_bug.cgi?id=930 Summary: DCCP: --dccp-types and --dccp-option are not supported Product: nftables Version: unspecified Platform: x86_64 OS/Version: Debian GNU/Linux Status: NEW Severity: normal Priority: P5 Component: nft AssignedTo: pablo...
2016 Mar 06
1
[Bug 1055] New: dccp type reset throws errors
https://bugzilla.netfilter.org/show_bug.cgi?id=1055 Bug ID: 1055 Summary: dccp type reset throws errors Product: nftables Version: unspecified Hardware: x86_64 OS: All Status: NEW Severity: normal Priority: P5 Component: nft Assignee: pablo at netfilter.org Reporter: s...
2011 Jun 30
6
puppet autosign by VLAN IP
Hi, Can puppet autosign work by giving vlan IP instead of domain? For example, in the autosign.conf file, instead of using *.mydomain.org, I want to give 172.18.133.* But it does not seem to work if I give the IP address. But I don''t want to limit the client from *.mydomain.org by only allow certain vlan client not all the are in the same domain. Thanks, -Haiyan -- You received this
2009 Jul 17
0
[ANNOUNCE] conntrack-tools 0.9.13 released
Hi! The netfilter project presents another development release of the conntrack-tools that includes support for all the protocol helpers available in 2.6.30 that were missing so far (SCTP, UDPlite, DCCP and GRE). The daemon updates includes a fix for a memory leak that can be triggered under heavy load and if you set a hashtable in user-space that is smaller than the one in the kernel. Moreover, it adds initial support for DCCP and SCTP state-synchronization. Please, see changelog attached for mo...
2007 Dec 04
1
Can't build CentOS 5.1 kernel from source
...nel- 2.6.18-53.el5.nx-root/kabi_whitelist + rm -f /var/tmp/kernel-2.6.18-53.el5.nx-kabideps + /home/rpmbuild/SOURCES/kabitool -b . -d /var/tmp/kernel- 2.6.18-53.el5.nx-kabideps -k 2.6.18-53.el5.nx -w /var/tmp/kernel- 2.6.18-53.el5.nx-root/kabi_whitelist nm: net/decnet/built-in.o: no symbols nm: net/dccp/ccids/built-in.o: no symbols nm: net/dccp/built-in.o: no symbols nm: sound/core/built-in.o: no symbols nm: drivers/isdn/hardware/built-in.o: no symbols nm: drivers/i2c/built-in.o: no symbols nm: drivers/media/dvb/built-in.o: no symbols nm: drivers/media/built-in.o: no symbols nm: drivers/scsi/built...
2017 Feb 27
2
New 4.9.11-22 kernels and linux-firmware packages to test in xen-testing for CentOS-6 and CentOS-7
...e to test this kernel and associated packages >> thoroughly so we can find and fix issues before release. >> >> Please post any issues or questions on this list. > > OK, just tagged 4.9.13-22.el7 (and .el6) to the testing repos for xen on > c6 and c7 as this fixes the new dccp kernel issue. > > Only have one person reporting good tests so far. We need more testing > or we risk to breaking people's systems when we release later. > > > > > _______________________________________________ > CentOS-virt mailing list > CentOS-virt at centos.o...
2017 Feb 21
2
New 4.9.11-22 kernels and linux-firmware packages to test in xen-testing for CentOS-6 and CentOS-7
I have pushed some new kernels and linux-firmware packages to the xen-testing repos for both CentOS-6 and CentOS-7. The CentOS-7 packages may take a few hours to make it to the repo. The CentOS-6 repo also contains a newer xfsprogs as that is required with newer kernels (https://bugzilla.redhat.com/show_bug.cgi?id=1314605). This kernel (and supplementary xfsprogs, linux-firmware) are scheduled
2023 Jun 17
2
[PATCH net-next v2 17/17] net: Kill MSG_SENDPAGE_NOTLAST
..." <davem at davemloft.net> cc: Eric Dumazet <edumazet at google.com> cc: Jakub Kicinski <kuba at kernel.org> cc: Paolo Abeni <pabeni at redhat.com> cc: Jens Axboe <axboe at kernel.dk> cc: Matthew Wilcox <willy at infradead.org> cc: bpf at vger.kernel.org cc: dccp at vger.kernel.org cc: linux-afs at lists.infradead.org cc: linux-arm-msm at vger.kernel.org cc: linux-can at vger.kernel.org cc: linux-crypto at vger.kernel.org cc: linux-doc at vger.kernel.org cc: linux-hams at vger.kernel.org cc: linux-perf-users at vger.kernel.org cc: linux-rdma at vger.kernel....
2017 Feb 27
0
New 4.9.11-22 kernels and linux-firmware packages to test in xen-testing for CentOS-6 and CentOS-7
...gt; We really need people to test this kernel and associated packages > thoroughly so we can find and fix issues before release. > > Please post any issues or questions on this list. OK, just tagged 4.9.13-22.el7 (and .el6) to the testing repos for xen on c6 and c7 as this fixes the new dccp kernel issue. Only have one person reporting good tests so far. We need more testing or we risk to breaking people's systems when we release later. -------------- next part -------------- A non-text attachment was scrubbed... Name: signature.asc Type: application/pgp-signature Size: 198 byt...
2011 Dec 05
0
[Bug 763] New: dnat and snat not changing port numbers on sctp packets
...s: NEW Severity: normal Priority: P3 Component: NAT AssignedTo: netfilter-buglog at lists.netfilter.org ReportedBy: nbollinger at gmail.com Estimated Hours: 0.0 Looking at this patch, dnat and snat were changed to modify sctp packets "Add SCTP/DCCP support to NAT targets" http://git.netfilter.org/cgi-bin/gitweb.cgi?p=iptables.git;a=commit;h=5a942f9501f7ce287e1c37c553eb02a1e269e081 While dnat and snat do change the destination/source ips, its not changing the port numbers when specified. Is it possible to fix this so that ports can also...
2012 Mar 19
0
Shorewall 4.5.1.1
...LL specified in the remote firewall''s shorewall.conf did not exist. 2) The changes to TOS handling in 4.5.1 are incompatible with older releases such as RHEL5 and derivatives. That has been corrected. 3) The rules compiler now verifies that the protocol is TCP, UDP, SCTP or DCCP when checking a port range (low:high or low-high). 4) Previously, start or restart using the init script would fail with an error message referencing ''SHOREWALL_INIT_SCRIPT''. This defect was not visible to users that set AUTOMAKE=Yes or that run Shorewall-init. Than...
2019 Apr 22
1
[Bug 1335] New: iptables-restore will crash if -6 rules are present
...ables-restore. This option has no effect in ip6tables and ip6tables-restore. Also, the error message is always a inconsistent, telling something else is the problem. In my case: iptables-restore v1.8.2 (nf_tables): multiport needs `-p tcp', `-p udp', `-p udplite', `-p sctp' or `-p dccp' -- You are receiving this mail because: You are watching all bug changes. -------------- next part -------------- An HTML attachment was scrubbed... URL: <http://lists.netfilter.org/pipermail/netfilter-buglog/attachments/20190422/eead5bed/attachment.html>
2019 Aug 27
0
[Bug 1362] New: iptables translation issues
...skip them? I also ran into a baffling error message for a rule that uses the multiport module, and couldn't find a workaround or even what the real problem was: iptables-translate-restore v1.8.2 (nf_tables): multiport needs `-p tcp', `-p udp', `-p udplite', `-p sctp' or `-p dccp' Here's an attempt to manually translate the line in question: bash# iptables-translate -4 -A protect-re -m multiport -p udp -s 10.0.0.0/24 --ports 161,514 -j ACCEPT nft # -4 -A protect-re -m multiport -p udp -s 10.0.0.0/24 --ports 161,514 -j ACCEPT bash# -- You are receiving this m...
2009 Mar 23
2
[ANNOUNCE]: Release of iptables-1.4.3
...rary. Some distributions have been carrying patches for this despite being explicitly unsupported. The library does not guarantee a stable API, but it should make life for distributors a bit easier. - IPv6 support for the recent match from Jan - TPROXY support by Krisztian Kovacs - SCTP/DCCP NAT support by myself And lots of smallish changes, almost 90% of which are from Jan. Check out the Changelog for more details. This release starts enforcing the deprecation of NAT filtering that was added in 1.4.2-rc1, filtering rules in the NAT tables will cause an error instead of a warning fr...
2008 Jul 07
10
[PATCH RFC 0/4] Paravirtual spinlocks
At the most recent Xen Summit, Thomas Friebel presented a paper ("Preventing Guests from Spinning Around", http://xen.org/files/xensummitboston08/LHP.pdf) investigating the interactions between spinlocks and virtual machines. Specifically, he looked at what happens when a lock-holding VCPU gets involuntarily preempted. The obvious first order effect is that while the VCPU is not
2008 Jul 07
10
[PATCH RFC 0/4] Paravirtual spinlocks
At the most recent Xen Summit, Thomas Friebel presented a paper ("Preventing Guests from Spinning Around", http://xen.org/files/xensummitboston08/LHP.pdf) investigating the interactions between spinlocks and virtual machines. Specifically, he looked at what happens when a lock-holding VCPU gets involuntarily preempted. The obvious first order effect is that while the VCPU is not
2008 Jul 07
10
[PATCH RFC 0/4] Paravirtual spinlocks
At the most recent Xen Summit, Thomas Friebel presented a paper ("Preventing Guests from Spinning Around", http://xen.org/files/xensummitboston08/LHP.pdf) investigating the interactions between spinlocks and virtual machines. Specifically, he looked at what happens when a lock-holding VCPU gets involuntarily preempted. The obvious first order effect is that while the VCPU is not
2009 Jun 18
2
[PATCH node-image] Keep nls_utf8.ko module on node-image
...fs \ fs/jffs2 fs/jfs fs/minix fs/ncpfs fs/ocfs2 fs/qnx4 fs/reiserfs \ fs/romfs fs/sysv fs/udf fs/ufs fs/xfs" +nls_mods="fs/nls/nls_cp* fs/nls/nls_iso* fs/nls/nls_ko* fs/nls/nls_euc*" + net_mods="net/9p net/appletalk net/atm net/ax25 \ net/bluetooth net/dccp net/decnet net/ieee80211 net/ipx net/irda \ net/mac80211 net/netrom net/rfkill net/rose net/sched net/tipc \ @@ -83,7 +85,7 @@ echo "Removing excess kernel modules" MODULES="/lib/modules/*/kernel" RM="rm -rf" -for mods in $fs_mods $net_mods $misc_mods $driv...
2017 Feb 27
0
New 4.9.11-22 kernels and linux-firmware packages to test in xen-testing for CentOS-6 and CentOS-7
...ted packages >>> thoroughly so we can find and fix issues before release. >>> >>> Please post any issues or questions on this list. >> >> >> OK, just tagged 4.9.13-22.el7 (and .el6) to the testing repos for xen on >> c6 and c7 as this fixes the new dccp kernel issue. >> >> Only have one person reporting good tests so far. We need more testing >> or we risk to breaking people's systems when we release later. >> >> >> >> >> _______________________________________________ >> CentOS-virt mailin...
2016 Mar 16
2
Does SCTP help against TCP reset attacks?
...LS, plus pty plus sh) is a complete disruption of the workflow. And IPSec is really, really no no no. Looking around a bit i found RFC 4953, "Defending TCP Against Spoofing Attacks", and that mentions SCTP in a few places, e.g., "Other transport protocols, such as SCTP and DCCP, also have limited antispoofing mechanisms" and "whereas others establish per-connection identity based on exchanged nonces (e.g., SCTP)". Now i knew there was a SCTP patch floating for OpenSSH years ago, and it is indeed actively maintained until today and even available i...