search for: ipt_mark

Displaying 20 results from an estimated 26 matches for "ipt_mark".

2005 Nov 25
7
tcpdump not working with imq0 devices
...1504 0 (autoclean) ipt_LOG 3648 0 (autoclean) ipt_limit 960 0 (autoclean) iptable_filter 1728 0 (autoclean) ipt_mac 672 15 (autoclean) ipt_helper 992 22 (autoclean) ipt_multiport 640 132 (autoclean) ipt_MARK 800 255 (autoclean) iptable_mangle 2208 1 (autoclean) ians 113220 3 (autoclean) reiserfs 167392 1 (autoclean) e100 36292 4 ip_nat_ftp 2848 0 (unused) iptable_nat 22420 2 [ipt_REDIRECT...
2002 Sep 07
4
imq0 not being detected
mdew:~# tc qdisc add dev imq0 handle 1: root htb default 12 r2q 1 Cannot find device "imq0" mdew:~# lsmod Module Size Used by Not tainted ipt_REDIRECT 728 0 (autoclean) ipt_MARK 728 2 (autoclean) iptable_mangle 2100 1 (autoclean) ipt_REJECT 2712 4 (autoclean) iptable_filter 1672 1 (autoclean) ip_nat_ftp 3760 0 (unused) ip_conntrack_ftp 3616 0 [ip_nat_ftp] ip_nat_irc 3024 0...
2002 Mar 09
1
Problem with smbfs on 2.4.18 kernel
...1 (autoclean) smbfs 31680 1 (autoclean) serial 43968 0 (autoclean) (unused) af_packet 11144 2 (autoclean) ipt_TCPMSS 2368 1 (autoclean) ipt_TOS 1024 22 (autoclean) ipt_MASQUERADE 1216 2 (autoclean) ipt_MARK 736 13 (autoclean) ipt_LOG 3168 92 (autoclean) ipt_state 608 169 (autoclean) ip_nat_ftp 2944 0 (unused) ip_conntrack_ftp 3200 0 (unused) smc-ultra 5024 1 (autoclean) ne 6432 1 (aut...
2004 Nov 24
8
tc and iptables trouble
...problem? I''m using Debian testing, with kernel 2.6.9 compiled with netfilter patches, iptables 1.2.11, iproute2 2.6.9-1, and I have these modules loaded: Module Size Used by ebt_mark_m 1096 - ebt_mark 1096 - ebtables 17768 - ipt_mark 1128 - sch_wrr 11176 - sch_teql 4168 - sch_dsmark 5224 - cls_route 4936 - ipt_tcpmss 1640 - cls_tcindex 5256 - cls_u32 5772 - sch_ingress 2604 - ipt_TCPMSS...
2004 Oct 06
2
Unknown qdisc "htb", hence option "default" is unparsable
...Server 2.4.20-30.9 #1 Wed Feb 4 20:44:26 EST 2004 i686 i686 i386 GNU/Linux Module Size Used by Not tainted cls_u32 6300 0 (autoclean) cls_fw 3512 0 (autoclean) sch_sfq 4096 0 (autoclean) sch_htb 22176 0 ipt_MARK 1368 2 (autoclean) ip_nat_ftp 4112 0 (unused) ip_conntrack_ftp 5296 1 ipt_state 1080 0 (unused) ipt_limit 1560 0 (unused) ipt_LOG 4184 0 (unused) iptable_nat 21752 2 [ip_nat_ftp] iptable_ma...
2002 May 27
4
htb3 with imq
...h_htb.o sch_red.o sch_teql.o cls_route.o cls_u32.o sch_dsmark.o sch_ingress.o sch_sfq.o cls_rsvp.o sch_cbq.o sch_gred.o sch_prio.o sch_tbf.o [root@cab1 root]# [root@cab1 root]# ls /lib/modules/2.4.18/kernel/net/ipv4/netfilter/ ip_conntrack_egg.o iptable_nat.o ipt_MARK.o ipt_REDIRECT.o ip_conntrack_ftp.o ip_tables.o ipt_MASQUERADE.o ipt_REJECT.o ip_conntrack_h323.o ipt_ah.o ipt_MIRROR.o ipt_state.o ip_conntrack_irc.o ipt_conntrack.o ipt_mport.o ipt_string.o ip_conntrack.o ipt_dscp.o ipt_multiport.o...
2002 Jan 19
6
pasv ftp
Hi, ok Im all new to this :-) for pasv ftp in your example you say for example to use ports 65500-65535, but i dont see that u open those ports in your example fw scripts..? any hints ? -- Christophe Zwecker mail: doc@zwecker.de Hamburg, Germany fon: +49 179 3994867 http://www.zwecker.de "Who is General Failure ? And why is he reading my disk
2001 Mar 01
5
Bandwidth limiting a MASQed network.
Hi! I just recently entered the wonderful world of the so called "advanced routing" and decided to try and limit the bandwidth of a MASQed network here and ended up in trouble :(. The setup is (as far as I can tell) pretty straightforward. eth0 is connected to the "real" network with a proper IP, and eth2 is 192.168.10.x (the MASQed network). All of it is basicly right out of
2004 Oct 30
4
modules ipt_conntrack ipt_pkttype not found
...25 3c509 7648 2 (autoclean) isa-pnp 28136 0 (autoclean) [3c509] iptable_mangle 2144 1 ipt_ttl 640 0 (unused) ipt_tos 480 0 (unused) ipt_tcpmss 928 0 (unused) ipt_multiport 640 0 ipt_mark 480 0 (unused) ipt_mac 672 0 (unused) ipt_state 608 30 ipt_limit 960 0 (unused) ipt_unclean 6784 0 (unused) iptable_filter 1728 1 ipt_length 512 0 (unused) ipt_TOS 102...
2005 Apr 05
0
Help Disecting kernel crash with ldisc
...sc binfmt_aout raw ppp_deflate zlib_deflate bsd_comp ppp_async crc_ccitt ppp_gen eric slhc eepro100 eth1394 bridge atm cls_fw cls_u32 sch_sfq sch_htb af_packet ip6t_limit ip6t_LOG ip6t_mac ip6t_MARK ip6tab le_mangle ip6table_filter ip6_tables md5 ipv6 ipt_TARPIT ipt_limit ipt_REJECT ipt_LOG ipt_mac ipt_mark ipt_MASQUERADE iptabl e_nat ipt_owner ipt_MARK ipt_state ip_conntrack iptable_mangle iptable_filter ip_tables tsdev psmouse parport_pc parport evd ev floppy pcspkr sundance mii crc32 ohci1394 ieee1394 snd_intel8x0 snd_ac97_codec snd_pcm_oss snd_mixer_oss snd_pcm snd_time r snd soundcore snd_page_al...
2007 Dec 06
3
HTB performance improvement
...thm for my particular use? do you think that part of the performance responsibility is to be assigned at the linux QOS scheduler? 4) with only system conf + HTB with marking (iptables mark) classifier 13000 packets/sec (TX/RX), 0 packets lost: insmod ip_tables.ko insmod iptable_mangle.ko insmod ipt_MARK.ko insmod ipt_mark.ko insmod cls_fw.ko insmod sch_htb.ko insmod sch_prio.ko iptables -t mangle -A PREROUTING -i eth0.1 -p udp --dport 1001 -j MARK --set-mark 1 iptables -t mangle -A PREROUTING -i eth0.1 -p udp --dport 1001 -j RETURN iptables -t mangle -A PREROUTING -i eth0.1 -p udp --dport 1...
2005 Dec 17
0
ipt_IPMARK.c should have nfcache removed
Hello! I think 36th line of ipt_MARK which is (*pskb)->nfcache |= NFC_ALTERED; Should be removed. At least looking at that patch: http://lists.netfilter.org/pipermail/netfilter-devel/2005-July/020382.html -- Michał Margula, alchemyx@uznam.net.pl, http://alchemyx.uznam.net.pl/ "W życiu piękne są tylko chwile" [Ryszard...
2005 May 29
17
Plans for 2.4.0
Hi folks, Has anyone tested the changes to multiple ISPs/load balancing or routestopped in 2.4.0-RC1 yet? We need to talk about what criteria we will use for determining whether 2.4.0 is ready for release. I''ve started configuring a firewall at work with the multiple ISPs support, but its kernel doesn''t have connection marking support, so it''s going to be a couple of
2004 Mar 24
3
IP Masquerade issues
...# #    ip_nat_snmp_basic - this module allows for proper NATing of some #                        SNMP traffic # #    iptable_mangle    - this target allows for packets to be #                        manipulated for things like the TCPMSS #                        option, etc. # # -- # #    ipt_mark       - this target marks a given packet for future action. #                     This automatically loads the ipt_MARK module # #    ipt_tcpmss     - this target allows to manipulate the TCP MSS #                     option for braindead remote firewalls. #                     This automatica...
2004 Oct 22
3
iptables: No chain/target/match by that name
...o ipt_owner.ko ipt_tcpmss.ko iptable_mangle.ko ip_conntrack_irc.ko ip_nat_tftp.ko ipt_REDIRECT.ko ipt_conntrack.ko ipt_helper.ko ipt_mac.ko ipt_pkttype.ko ipt_tos.ko iptable_nat.ko ip_conntrack_tftp.ko ip_tables.ko ipt_REJECT.ko ipt_dscp.ko ipt_iprange.ko ipt_mark.ko ipt_recent.ko ipt_ttl.ko Should one of these modules be loaded to solve the problem?
2002 Sep 25
0
PROBLEM:
...2.2.5 Dynamic linker (ldd) 2.2.5 Procps 2.0.7 Net-tools 1.60 Console-tools 0.3.3 Sh-utils 2.0.11 Modules Loaded ipsec ppp_synctty ppp_async ppp_generic slhc 8139too via-rhine binfmt_misc epca autofs mii ipt_REJECT ipt_LOG ipt_state ipt_MARK iptable_mangle ipt_MASQUERADE iptable_nat iptable_filter usb-uhci usbcore ext3 jbd Recent log entries (not including oops): Sep 25 10:46:51 gw kernel: journal_bmap_Rc2009e7d: journal block not found at offset 7185 on md (9,3) Sep 25 10:46:51 gw kernel: Aborting journal on device md(9,3). Sep 25...
2006 Apr 04
3
Another question (now about u32)
Hello all, I am trying to match some conections using u32 but I tryed this: [root@ns1 ~]# tc filter add dev eth1 parent 1:0 protocol ip prio 1 u32 match ip src 0/0 match ip dst 0/0 match ip sport 80 0xffff flowid 1:10 RTNETLINK answers: Invalid argument We have an error talking to the kernel [root@ns1 ~]# I have this class at device eth1: [root@ns1 ~]# tc class show dev eth1 class
2006 Apr 16
2
e2fsck dies with signal 11
...t: e7a8 [#3] Modules linked in: i915 drm snd_seq_dummy snd_seq_oss snd_seq_midi_event snd_seq snd_seq_device snd_pcm_oss snd_mixer_oss snd_intel8x0 snd_ac97_codec snd_pcm snd_timer snd_page_alloc snd soundcore lp parport_pc ppdev parport ipt_REJECT ipt_LOG ipt_state ipt_pkttype ipt_set ipt_CONNMARK ipt_MARK ipt_ROUTE ipt_connmark ipt_owner ipt_recent ipt_iprange ipt_physdev ipt_multiport ipt_conntrack iptable_mangle ip_set_portmap ip_set_macipmap ip_set_ipmap ip_set_iphash ip_set ip_nat_irc ip_nat_tftp ip_nat_ftp iptable_nat ip_conntrack_irc ip_conntrack_tftp ip_conntrack_ftp ip_conntrack iptable_filt...
2006 Mar 14
1
iptables+iproute problem
...--------- # # ip_nat_snmp_basic - this module allows for proper NATing of some # SNMP traffic # # iptable_mangle - this target allows for packets to be # manipulated for things like the TCPMSS # option, etc. # # -- # # ipt_mark - this target marks a given packet for future action. # This automatically loads the ipt_MARK module # # ipt_tcpmss - this target allows to manipulate the TCP MSS # option for braindead remote firewalls. # This automatically l...
2004 Oct 20
1
Unable to handle kernel paging request at virtual address
...g request at virtual address 00100100 Oct 20 16:52:24 pototogorri kernel: printing eip: Oct 20 16:52:24 pototogorri kernel: c0267fb4 Oct 20 16:52:24 pototogorri kernel: *pde = 00000000 Oct 20 16:52:24 pototogorri kernel: Oops: 0000 [#1] Oct 20 16:52:24 pototogorri kernel: Modules linked in: cls_fw ipt_MARK ide_floppy ide_tape sch_sfq sch_htb iptable_mangle sg sr_mod ide_cd cd Oct 20 16:52:24 pototogorri kernel: CPU: 0 Oct 20 16:52:24 pototogorri kernel: EIP: 0060:[<c0267fb4>] Not tainted Oct 20 16:52:24 pototogorri kernel: EFLAGS: 00010206 (2.6.8.1) Oct 20 16:52:24 pototogorri ke...