Re: ip_conntrack_ftp messages

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

 



On Monday 2008-11-24 16:32, Patrick McHardy wrote:
>> 
>> I've seen these messages when something other than FTP is utilizing
>> port 21.  Perhaps we should have a bit in the conntrack helper which
>> stops looking on future packets if it doesn't see FTP traffic in the
>> beginning of the session?
>
> That would make sense, but I can't see a good way to make this
> decision except maybe when we seen non-ascii characters. But
> even that will fail with different encodings. Do you have a
> good idea?

Well, each packet (or rather, every new line) should be a "123 " code,
followed by whatever text plus a newline.
--
To unsubscribe from this list: send the line "unsubscribe netfilter-devel" in
the body of a message to majordomo@xxxxxxxxxxxxxxx
More majordomo info at  http://vger.kernel.org/majordomo-info.html

[Index of Archives]     [Netfitler Users]     [LARTC]     [Bugtraq]     [Yosemite Forum]

  Powered by Linux