Re: command owner match support

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

 



On Thu, Jan 05, 2006 at 12:56:38 -0600, Ryan L wrote:

> I'm trying to block specific applications through iptables. However I
> keep getting the following error message: Jan  4 22:44:05 thor
> ipt_owner: pid, sid and command matching not supported anymore Is
> there any way to add this back into the newer kernels or to do this
> without it?

I'm not seeing that message when I try and use --cmd-owner or
--pid-owner, I just get "iptables: Invalid argument".  However the
commands are listed in the output of "iptables --owner --help" for
IPTables 1.3.3.

I can only presume that that functionality has silently "gone away".  I
can't see anything on mailing lists or in the netfilter documentation,
are there any references for when this was removed, or why, or what it
should be replaced with, if anything?

-- 
When the going gets tough, the tough call for close air support.


[Index of Archives]     [Linux Netfilter Development]     [Linux Kernel Networking Development]     [Netem]     [Berkeley Packet Filter]     [Linux Kernel Development]     [Advanced Routing & Traffice Control]     [Bugtraq]

  Powered by Linux