Displaying 20 results from an estimated 3000 matches similar to: "conntrack related dropped packets or HTB issues on 2.6.11?"
2005 Nov 28
0
conntrack match failed, packets not FWMarked
Hi all,
I have 2 ISPs on a Linux router and a local network with one Linux server
and many windows.
The local network is masqueraded.
I want to give access to port 25 and 80 of my server from any incoming
request (i.e. from my 2 ISP). I have made a DNAT translation, witch work but
the outgoing answers are not routed correctly. Of course, the de-SNAT
process is done before the routing process. So
2003 Feb 14
3
[Bug 47] conntrack breaks nfs, corrupted packets
https://bugzilla.netfilter.org/cgi-bin/bugzilla/show_bug.cgi?id=47
------- Additional Comments From laforge@netfilter.org 2003-02-14 09:14 -------
did you load iptable_nat at the time the problem with wrong-destip does happen?
------- You are receiving this mail because: -------
You are on the CC list for the bug, or are watching someone who is.
2006 Sep 13
0
[Bug 508] New: ip6tables conntrack marks all incoming packets as INVALID
https://bugzilla.netfilter.org/bugzilla/show_bug.cgi?id=508
Summary: ip6tables conntrack marks all incoming packets as
INVALID
Product: netfilter/iptables
Version: linux-2.6.x
Platform: i386
OS/Version: Gentoo
Status: NEW
Severity: normal
Priority: P2
Component: ip_conntrack
2003 Jun 30
6
[Bug 47] conntrack breaks nfs, corrupted packets
https://bugzilla.netfilter.org/cgi-bin/bugzilla/show_bug.cgi?id=47
------- Additional Comments From dg@ezcom.de 2003-06-30 16:17 -------
today i replaced my 8139too with a 3c59x and the corruptions are gone
------- You are receiving this mail because: -------
You are on the CC list for the bug, or are watching someone who is.
2006 Sep 14
5
[Bug 508] ip6tables conntrack marks all incoming packets as INVALID
https://bugzilla.netfilter.org/bugzilla/show_bug.cgi?id=508
------- Additional Comments From kaber@trash.net 2006-09-14 13:18 MET -------
Did you enable nf_conntrack and the ipv6 connection tracking module?
--
Configure bugmail: https://bugzilla.netfilter.org/bugzilla/userprefs.cgi?tab=email
------- You are receiving this mail because: -------
You reported the bug, or are watching the
2018 Feb 15
2
[Bug 1227] New: Current conntrack state isn't considered when evaluating multiple SNAT rules
https://bugzilla.netfilter.org/show_bug.cgi?id=1227
Bug ID: 1227
Summary: Current conntrack state isn't considered when
evaluating multiple SNAT rules
Product: netfilter/iptables
Version: unspecified
Hardware: All
OS: other
Status: NEW
Severity: enhancement
Priority: P5
2003 May 14
4
[Bug 47] conntrack breaks nfs, corrupted packets
https://bugzilla.netfilter.org/cgi-bin/bugzilla/show_bug.cgi?id=47
------- Additional Comments From kaber@trash.net 2003-05-14 02:39 -------
I've captured some non-fragmented tcp packets which show this behaviour with
2.4.21-rc2.
They look badly damaged. The destination ip doesn't match the mac but they come
from valid connections. Setting interface mtu to 1486 helps which makes me
2005 Jun 24
5
xen, fc4, bridging, iptables and conntrack problem
Hi,
I''m testing out Xen on FC4. I''m using bridging for networking, as
well as iptables to firewall, configured with the standard Fedora
''system-config-security-level'' tool. However I have really strange
problem with conntrack not seeming to catch outbound connections.
This prevents outbound connections working from dom0. Connections
from domU''s
2018 May 09
6
[Bug 1257] New: conntrack family filter does not work with conntrack-tools 1.4.5
https://bugzilla.netfilter.org/show_bug.cgi?id=1257
Bug ID: 1257
Summary: conntrack family filter does not work with
conntrack-tools 1.4.5
Product: conntrack-tools
Version: unspecified
Hardware: All
OS: All
Status: NEW
Severity: normal
Priority: P5
Component:
2005 Feb 24
8
[Bug 91] conntrack unload loops forever (reproducible)
https://bugzilla.netfilter.org/bugzilla/show_bug.cgi?id=91
netfilter@linuxace.com changed:
What |Removed |Added
----------------------------------------------------------------------------
CC| |netfilter@linuxace.com
------- Additional Comments From netfilter@linuxace.com 2005-02-24 02:10 MET -------
Any recent
2020 Apr 01
0
[ANNOUNCE] conntrack-tools 1.4.6
Hi!
The Netfilter project proudly presents:
conntrack-tools 1.4.6
The conntrack-tools are a set of tools targeted at system
administrators. They are conntrack, the userspace command line
interface, and conntrackd, the userspace daemon. The tool conntrack
provides a full featured interface that is intended to replace the old
/proc/net/ip_conntrack interface. Using conntrack, you can view
2012 Jan 05
0
[ANNOUNCE] conntrack-tools 1.0.1 release
Hi!
The Netfilter project proudly presents:
conntrack-tools 1.0.1
The conntrack-tools are a set of tools targeted at system
administrators. They are conntrack, the userspace command line
interface, and conntrackd, the userspace daemon. The tool conntrack
provides a full featured interface that is intended to replace the old
/proc/net/ip_conntrack interface. Using conntrack, you can view
2013 Aug 06
0
[ANNOUNCE] conntrack-tools 1.4.2 release
Hi!
The Netfilter project proudly presents:
conntrack-tools 1.4.2
The conntrack-tools are the userspace command line interface
`conntrack' and the userspace daemon `conntrackd'. The conntrack
utility replaces the old /proc/net/nf_conntrack interface. With
conntrack, you can dump, modify and delete entries from the connection
tracking state table from userspace. On the other
2010 Jul 15
0
[ANNOUNCE] conntrack-tools 0.9.15 released
Hi!
The Netfilter project presents another development release of the
conntrack-tools. This release includes:
* IPv6-icmp fix for state synchronization.
* Support for TCP window tracking (it requires a Linux >= 2.6.35).
* Improvements and fixes for the NAT filtering support for the command
line tool `conntrack'.
* Patrick McHardy's conntrack zone support (See iptables' CT target).
2013 Dec 24
3
[Bug 882] New: The conntrack-tools archive contains some leftovers from a patch run
https://bugzilla.netfilter.org/show_bug.cgi?id=882
Summary: The conntrack-tools archive contains some leftovers
from a patch run
Product: conntrack-tools
Version: unspecified
Platform: All
OS/Version: All
Status: NEW
Severity: trivial
Priority: P5
Component: conntrack-daemon
2017 Feb 02
1
[Bug 1116] New: Can't create Ipv6 NAT entries with conntrack
https://bugzilla.netfilter.org/show_bug.cgi?id=1116
Bug ID: 1116
Summary: Can't create Ipv6 NAT entries with conntrack
Product: conntrack-tools
Version: unspecified
Hardware: All
OS: All
Status: NEW
Severity: enhancement
Priority: P5
Component: conntrack
Assignee:
2007 Jul 02
0
[ANNOUNCE] Release conntrack-tools 0.9.4
Hi!
The netfilter project proudly presents another development release of
the conntrack-tools. The conntrack-tools are:
- The userspace daemon so-called conntrackd that covers the specific
aspects of stateful Linux firewalls to enable high availability
solutions. It can be used as statistics collector of the firewall use as
well. The daemon is highly configurable and easily extensible.
- The
2007 Jul 29
0
[ANNOUNCE] Release conntrack-tools 0.9.5
Hi!
The netfilter project proudly presents another development release of
the conntrack-tools. The conntrack-tools are:
- The userspace daemon so-called conntrackd that covers the specific
aspects of stateful Linux firewalls to enable high availability
solutions. It can be used as statistics collector of the firewall use as
well. The daemon is highly configurable and easily extensible.
- The
2008 Dec 18
0
[ANNOUNCE] conntrack-tools 0.9.9 released
Hi!
The netfilter project proudly presents another development release of
the conntrack-tools. This release includes important updates, fixes and
improvements. See changelog for details.
Q: What are the conntrack-tools?
A: The conntrack-tools are:
- The userspace daemon so-called conntrackd that covers the specific
aspects of stateful Linux firewalls to enable high availability
solutions. It
2009 Jul 17
0
[ANNOUNCE] conntrack-tools 0.9.13 released
Hi!
The netfilter project presents another development release of the
conntrack-tools that includes support for all the protocol helpers
available in 2.6.30 that were missing so far (SCTP, UDPlite, DCCP and
GRE). The daemon updates includes a fix for a memory leak that can be
triggered under heavy load and if you set a hashtable in user-space that
is smaller than the one in the kernel. Moreover,