Dâniel Fraga <fragabr@xxxxxxxxx> wrote: > iptables -A INPUT -m conntrack --ctstate RELATED,ESTABLISHED -j ACCEPT > > And I got the same error: > > iptables: Protocol wrong type for socket. > > I'm afraid something has changed between 4.3.0 and 4.3.1 kernel > and some module isn't loading correctly. Here are the loaded modules: > > xt_conntrack 3401 0 > x_tables 15108 7 xt_comment,ip_tables,xt_tcpudp,xt_conntrack,xt_LOG,iptable_filter,ipt_REJECT > nf_conntrack_ftp 6750 0 > nf_conntrack 56108 2 xt_conntrack,nf_conntrack_ftp > > Is there something missing? Yes: nf_conntrack_ipv4 -- To unsubscribe from this list: send the line "unsubscribe netfilter-devel" in the body of a message to majordomo@xxxxxxxxxxxxxxx More majordomo info at http://vger.kernel.org/majordomo-info.html