Using iptables 1.3.8 with kernel 2.6.25, rules which include '-m iprange' don't automatically pull in xt_iprange module. Below patch adds module aliases to fix that. Patch against latest -git, but seems like a good candidate for -stable also. Phil Signed-off-by: Phil Oester <kernel@xxxxxxxxxxxx>
--- linux-2.6.25.i686/net/netfilter/xt_iprange.c.orig 2008-05-12 12:25:55.000000000 -0400 +++ linux-2.6.25.i686/net/netfilter/xt_iprange.c 2008-05-12 12:23:55.000000000 -0400 @@ -179,3 +179,5 @@ MODULE_LICENSE("GPL"); MODULE_AUTHOR("Jozsef Kadlecsik <kadlec@xxxxxxxxxxxxxxxxx>, Jan Engelhardt <jengelh@xxxxxxxxxxxxxxx>"); MODULE_DESCRIPTION("Xtables: arbitrary IPv4 range matching"); +MODULE_ALIAS("ipt_iprange"); +MODULE_ALIAS("ip6t_iprange");