IP Tables connection tracking for saned?

Tony Nelson tonynelson at georgeanelson.com
Fri Oct 12 00:47:21 UTC 2007


At 12:24 PM -0400 10/11/07, Matthew Saltzman wrote:
>On Thu, 2007-10-11 at 10:01 -0400, Tony Nelson wrote:
 ...
>> Do you have any evidence that ip_conntrack_sane exists?  The only mention
>> on Google is someone who couldn't find it (if I made sense of the
>> translation from Chinese).
>
>I'm not even sure where to look.  ip_conntrack_netbios_ns and
>ip_conntrack_amanda load fine.  The only files with similar names I can
>find are
>/lib/modules/<version>/kernel/net/netfilter/nf_conntrack_netbios_ns.ko
>and /lib/modules/<version>/kernel/net/netfilter/nf_conntrack_amanda.ko,
>but there is
>a /lib/modules/<version>/kernel/net/netfilter/nf_conntrack_sane.ko.  So
>if those files are related to those modules, the answer should be yes.
>
>If not, then I really don't understand how the iptables modules thing
>works at all.

I see that the ip_conntrack_* modules are now called nf_conntrack_*, which
is why my search failed -- and nf_conntrack_sane is fairly new, so I don't
have
nf_conntrack_sane.ko.
-- 
____________________________________________________________________
TonyN.:'                       <mailto:tonynelson at georgeanelson.com>
      '                              <http://www.georgeanelson.com/>




More information about the fedora-list mailing list