Tirsdag 04 maj 2010 09:13:43 skrev Jan Engelhardt: > On Tuesday 2010-05-04 08:32, Simon Lodal wrote: > >--state UNTRACKED was missing in man page. > > As is --ctstate UNTRACKED Were you aiming for this, or just making a remark? Signed-off-by: Simon Lodal <simonl@xxxxxxxxxx> diff -ruNp a/extensions/libxt_conntrack.man b/extensions/libxt_conntrack.man --- a/extensions/libxt_conntrack.man 2010-03-01 15:11:28.000000000 +0100 +++ b/extensions/libxt_conntrack.man 2010-05-04 09:57:47.000000000 +0200 @@ -55,6 +55,10 @@ in both directions, meaning that the packet is starting a new connection, but is associated with an existing connection, such as an FTP data transfer, or an ICMP error. .TP +\fBUNTRACKED\fR +meaning that the packet is not tracked at all, which happens if you use +the NOTRACK target in mangle table. +.TP \fBSNAT\fR A virtual state, matching if the original source address differs from the reply destination. diff -ruNp a/extensions/libxt_state.man b/extensions/libxt_state.man --- a/extensions/libxt_state.man 2010-03-01 15:11:28.000000000 +0100 +++ b/extensions/libxt_state.man 2010-05-04 09:57:47.000000000 +0200 @@ -19,3 +19,6 @@ directions, and meaning that the packet is starting a new connection, but is associated with an existing connection, such as an FTP data transfer, or an ICMP error. +.B UNTRACKED +meaning that the packet is not tracked at all, which happens if you use +the NOTRACK target in mangle table. -- To unsubscribe from this list: send the line "unsubscribe netfilter-devel" in the body of a message to majordomo@xxxxxxxxxxxxxxx More majordomo info at http://vger.kernel.org/majordomo-info.html