Re: 2.4.20: MASQ firewall is losing TCP sessions [tcpdumped]

Martin Josefsson (gandalf@wlug.westbo.se)
15 Jun 2003 20:36:57 +0200


On Sun, 2003-06-15 at 19:55, insecure wrote:

> Looks like firewall forgot about our connection. What's going on?
>
> Kernel: 2.4.20, .config is at the end of this mail.

Kernel 2.4.20 has a very serious problem with ip_conntrack.
It has been corrected in 2.4.21 so please upgrade.

> I'd be happy to provide more info on known connections and the like,
> but I failed to find an iptables equivalent of ipchains -M. :(

cat /proc/net/ip_conntrack

Upgrade to 2.4.21, if that doesn't work you can provide more info.

-- 
/Martin
-
To unsubscribe from this list: send the line "unsubscribe linux-kernel" in
the body of a message to majordomo@vger.kernel.org
More majordomo info at  http://vger.kernel.org/majordomo-info.html
Please read the FAQ at  http://www.tux.org/lkml/