From: "Laurence J. Lane" <ljlane@xxxxxxxxxx> The first might work. The second doesn't. (The other corrections in the bug report are already implemented.) http://bugs.debian.org/654983 Signed-off-by: Laurence J. Lane <ljlane@xxxxxxxxxx> --- extensions/libxt_conntrack.man | 4 ++-- 1 file changed, 2 insertions(+), 2 deletions(-) diff --git a/extensions/libxt_conntrack.man b/extensions/libxt_conntrack.man index 15fd1dd..4b13f0f 100644 --- a/extensions/libxt_conntrack.man +++ b/extensions/libxt_conntrack.man @@ -45,7 +45,7 @@ States for \fB\-\-ctstate\fP: The packet is associated with no known connection. .TP \fBNEW\fP -The packet has started a new connection, or otherwise associated +The packet has started a new connection or otherwise associated with a connection which has not seen packets in both directions. .TP \fBESTABLISHED\fP @@ -54,7 +54,7 @@ in both directions. .TP \fBRELATED\fP The packet is starting a new connection, but is associated with an -existing connection, such as an FTP data transfer, or an ICMP error. +existing connection, such as an FTP data transfer or an ICMP error. .TP \fBUNTRACKED\fP The packet is not tracked at all, which happens if you explicitly untrack it -- 1.8.4.rc2 -- To unsubscribe from this list: send the line "unsubscribe netfilter-devel" in the body of a message to majordomo@xxxxxxxxxxxxxxx More majordomo info at http://vger.kernel.org/majordomo-info.html