how to use -m conntrack --ctexpire

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

 



in my NAT box I found a lot of
transform item in /proc/net/ip_conntrack
with the expire time larger than 400000
I wanna drop it and check iptables manual
i found the -m conntrack option
 
how to use this match extension?
 

[Index of Archives]     [Linux Netfilter Development]     [Linux Kernel Networking Development]     [Netem]     [Berkeley Packet Filter]     [Linux Kernel Development]     [Advanced Routing & Traffice Control]     [Bugtraq]

  Powered by Linux