Re: nf_conntrack.acct has no effect

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

 





On Tue, 17 Mar 2009, Holger Eitzenberger wrote:

On Mon, Mar 16, 2009 at 05:56:52PM +0100, Patrick McHardy wrote:

Currently the default is set based on the old config option.
When unset, no acct-extend is allocated for *new* conntracks.
The old ones that do have an acct-extend are still displayed.

I think the current implementation is unfortunate, because the
connbytes match auto-selects CONFIG_NF_CT_ACCT, and you end up having
the message always and can't get rid of it other than patching
it out.

This is not exactly true. CONFIG_NF_CT_ACCT only selects the default value, you are still able to disable it with sysctl.

Best regards,

				Krzysztof Olędzki

[Index of Archives]     [Netfitler Users]     [LARTC]     [Bugtraq]     [Yosemite Forum]

  Powered by Linux