Kurt Tragant wrote:
I did some tests with connection tracking and decided finally to switch off
conntrack. So I deselected connection tracking in the kernel. But if I start the
computer there is still a:
ip_conntrack version 2.1 (2047 buckets, 16376 max) - 152 bytes per conntrack
You probably have an ip_conntrack module that it is loading still.
Do a lsmod to see. You'll need to delete it (or you might be able
to add something to /etc/modules.conf). Look under
/lib/modules/$(KERNELRELEASE)/kernel/net/ipv4/netfilter/
--
Philip Craig - philipc@xxxxxxxxxxxx - http://www.SnapGear.com
SnapGear - Custom Embedded Solutions and Security Appliances