Doug Smythies <dsmythies@xxxxxxxxx> wrote: > > Could you try conntrack -F after removing your ruleset? > > ad1d697 + this patch: > > O.K. that eliminates the 1 minute wait, and the other ssh connections > drop right away when I try to use them, after ruleset is loaded again. > The ssh session I ran the commands from is fine, usually. > I've tried it multiple ways and with / without nf_conntrack_tcp_be_liberal Then https://patchwork.ozlabs.org/patch/961105/ should resolve all issues.